Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2q86-2ww4-wc89

Опубликовано: 08 сент. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

An issue was discovered in iscflashx64.sys 3.9.3.0 in Insyde H2OFFT 6.20.00. When handling IOCTL 0x22229a, the input used to allocate a buffer and copy memory is mishandled. This could cause memory corruption or a system crash.

An issue was discovered in iscflashx64.sys 3.9.3.0 in Insyde H2OFFT 6.20.00. When handling IOCTL 0x22229a, the input used to allocate a buffer and copy memory is mishandled. This could cause memory corruption or a system crash.

EPSS

Процентиль: 22%
0.00071
Низкий

7.1 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.1
nvd
больше 2 лет назад

An issue was discovered in iscflashx64.sys 3.9.3.0 in Insyde H2OFFT 6.20.00. When handling IOCTL 0x22229a, the input used to allocate a buffer and copy memory is mishandled. This could cause memory corruption or a system crash.

EPSS

Процентиль: 22%
0.00071
Низкий

7.1 High

CVSS3

Дефекты

CWE-787