Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36fr-2gcj-778v

Опубликовано: 02 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

A vulnerability, which was classified as problematic, was found in finixbit elf-parser. Affected is the function elf_parser::Elf_parser::get_segments of the file elf_parser.cpp. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. VDB-222222 is the identifier assigned to this vulnerability.

A vulnerability, which was classified as problematic, was found in finixbit elf-parser. Affected is the function elf_parser::Elf_parser::get_segments of the file elf_parser.cpp. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. VDB-222222 is the identifier assigned to this vulnerability.

EPSS

Процентиль: 8%
0.00031
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 2.8
nvd
почти 3 года назад

A vulnerability, which was classified as problematic, was found in finixbit elf-parser. Affected is the function elf_parser::Elf_parser::get_segments of the file elf_parser.cpp. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. VDB-222222 is the identifier assigned to this vulnerability.

CVSS3: 2.8
fstec
почти 3 года назад

Уязвимость функции elf_parser::Elf_parser::get_segments компонента elf_parser.cpp программного средства анализа elf файлов elf-parser, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 8%
0.00031
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-404