Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-395v-ww5m-qq2x

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Exim 4 before 4.94.2 allows Integer Overflow to Buffer Overflow because get_stdinput allows unbounded reads that are accompanied by unbounded increases in a certain size variable. NOTE: exploitation may be impractical because of the execution time needed to overflow (multiple days).

Exim 4 before 4.94.2 allows Integer Overflow to Buffer Overflow because get_stdinput allows unbounded reads that are accompanied by unbounded increases in a certain size variable. NOTE: exploitation may be impractical because of the execution time needed to overflow (multiple days).

EPSS

Процентиль: 46%
0.00236
Низкий

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 5 лет назад

Exim 4 before 4.94.2 allows Integer Overflow to Buffer Overflow because get_stdinput allows unbounded reads that are accompanied by unbounded increases in a certain size variable. NOTE: exploitation may be impractical because of the execution time needed to overflow (multiple days).

CVSS3: 7.8
nvd
почти 5 лет назад

Exim 4 before 4.94.2 allows Integer Overflow to Buffer Overflow because get_stdinput allows unbounded reads that are accompanied by unbounded increases in a certain size variable. NOTE: exploitation may be impractical because of the execution time needed to overflow (multiple days).

CVSS3: 7.8
debian
почти 5 лет назад

Exim 4 before 4.94.2 allows Integer Overflow to Buffer Overflow becaus ...

fstec
больше 5 лет назад

Уязвимость функции get_stdinput() агента пересылки сообщений Exim, связанная с целочисленным переполнением, позволяющая нарушителю повысить привилегии или выполнять произвольный код

suse-cvrf
почти 5 лет назад

Security update for exim

EPSS

Процентиль: 46%
0.00236
Низкий

Дефекты

CWE-190