Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-37qc-9cjf-ffmp

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Stack-based buffer overflow in Orbit downloader 2.6.3 and 2.6.4 allows remote attackers to execute arbitrary code via a long download URL, which is not properly handled during Unicode conversion for a balloon notification after a download has failed.

Stack-based buffer overflow in Orbit downloader 2.6.3 and 2.6.4 allows remote attackers to execute arbitrary code via a long download URL, which is not properly handled during Unicode conversion for a balloon notification after a download has failed.

EPSS

Процентиль: 99%
0.76581
Высокий

Дефекты

CWE-119

Связанные уязвимости

nvd
почти 18 лет назад

Stack-based buffer overflow in Orbit downloader 2.6.3 and 2.6.4 allows remote attackers to execute arbitrary code via a long download URL, which is not properly handled during Unicode conversion for a balloon notification after a download has failed.

EPSS

Процентиль: 99%
0.76581
Высокий

Дефекты

CWE-119