In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade BrianPugh/tamp to version 1.10.3 or higher.
Affected versions of this package are vulnerable to Out-of-bounds Write due to missing bounds checks in the tamp_decompressor_decompress_cb function of decompressor.c. An attacker can cause a crash or unintended behavior by providing specially crafted tamp files.