Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-22q4-f5r6-3xqw

Опубликовано: 17 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

EPSS

Процентиль: 100%
0.92127
Критический

7.3 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.3
ubuntu
около 1 года назад

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

CVSS3: 8.8
redhat
около 1 года назад

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

CVSS3: 7.3
nvd
около 1 года назад

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

CVSS3: 7.3
debian
около 1 года назад

The iconv() function in the GNU C Library versions 2.39 and older may ...

suse-cvrf
около 1 года назад

Security update for glibc-livepatches

EPSS

Процентиль: 100%
0.92127
Критический

7.3 High

CVSS3

Дефекты

CWE-787