Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-24hx-44cp-gqfx

Опубликовано: 14 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

In Eclipse Embedded CDT versions 6.0 to 6.7 if the CMSIS-Pack archive extracts a compromised CMSIS pack the archive extraction can extract files to locations outside of the pack, allowing writing of arbitrary files to other locations on disk.

In Eclipse Embedded CDT versions 6.0 to 6.7 if the CMSIS-Pack archive extracts a compromised CMSIS pack the archive extraction can extract files to locations outside of the pack, allowing writing of arbitrary files to other locations on disk.

EPSS

Процентиль: 28%
0.00349
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.1
nvd
5 дней назад

In Eclipse Embedded CDT versions 6.0 to 6.7 if the CMSIS-Pack archive extracts a compromised CMSIS pack the archive extraction can extract files to locations outside of the pack, allowing writing of arbitrary files to other locations on disk.

CVSS3: 9.1
debian
5 дней назад

In Eclipse Embedded CDT versions 6.0 to 6.7 if the CMSIS-Pack archive ...

EPSS

Процентиль: 28%
0.00349
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22