Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-1013

Опубликовано: 18 мар. 2024
Источник: debian
EPSS Низкий

Описание

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can be broken.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
unixodbcfixed2.3.14-1package

Примечания

  • https://github.com/lurcher/unixODBC/pull/157

  • Fixed by: https://github.com/lurcher/unixODBC/commit/45f501e1be2db6b017cc242c79bfb9de32b332a1 (v2.3.13)

  • Only affects example code, not present in binary packages

EPSS

Процентиль: 18%
0.00058
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 2 лет назад

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can be broken.

CVSS3: 7.8
redhat
около 2 лет назад

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can be broken.

CVSS3: 7.8
nvd
около 2 лет назад

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can be broken.

CVSS3: 7.1
msrc
около 1 месяца назад

Unixodbc: out of bounds stack write due to pointer-to-integer types conversion

suse-cvrf
больше 1 года назад

Security update for unixODBC

EPSS

Процентиль: 18%
0.00058
Низкий
Уязвимость CVE-2024-1013