Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3hqh-h748-xjx8

Опубликовано: 24 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

EPSS

Процентиль: 38%
0.00161
Низкий

7.8 High

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 2 лет назад

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

CVSS3: 7.8
nvd
больше 2 лет назад

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

CVSS3: 7.8
debian
больше 2 лет назад

There is a vulnerability in the strided image data parsing code in the ...

suse-cvrf
около 2 лет назад

Security update for libheif

CVSS3: 7.8
redos
около 2 лет назад

Уязвимость libheif

EPSS

Процентиль: 38%
0.00161
Низкий

7.8 High

CVSS3

Дефекты

CWE-120