Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3jff-hq38-gfvf

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Integer signedness error in format_jpeg.c in Asterisk 1.2.6 and earlier allows remote attackers to execute arbitrary code via a length value that passes a length check as a negative number, but triggers a buffer overflow when it is used as an unsigned length.

Integer signedness error in format_jpeg.c in Asterisk 1.2.6 and earlier allows remote attackers to execute arbitrary code via a length value that passes a length check as a negative number, but triggers a buffer overflow when it is used as an unsigned length.

EPSS

Процентиль: 86%
0.03378
Низкий

Связанные уязвимости

ubuntu
больше 19 лет назад

Integer signedness error in format_jpeg.c in Asterisk 1.2.6 and earlier allows remote attackers to execute arbitrary code via a length value that passes a length check as a negative number, but triggers a buffer overflow when it is used as an unsigned length.

nvd
больше 19 лет назад

Integer signedness error in format_jpeg.c in Asterisk 1.2.6 and earlier allows remote attackers to execute arbitrary code via a length value that passes a length check as a negative number, but triggers a buffer overflow when it is used as an unsigned length.

debian
больше 19 лет назад

Integer signedness error in format_jpeg.c in Asterisk 1.2.6 and earlie ...

EPSS

Процентиль: 86%
0.03378
Низкий