Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-28mj-jg9q-pj9c

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a malformed CHM file with a large name length in the CHM chunk header, aka "CHM name length memory consumption vulnerability."

Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a malformed CHM file with a large name length in the CHM chunk header, aka "CHM name length memory consumption vulnerability."

EPSS

Процентиль: 94%
0.15456
Средний

Дефекты

CWE-119

Связанные уязвимости

nvd
почти 19 лет назад

Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a malformed CHM file with a large name length in the CHM chunk header, aka "CHM name length memory consumption vulnerability."

EPSS

Процентиль: 94%
0.15456
Средний

Дефекты

CWE-119