Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3vv3-585q-wv6x

Опубликовано: 14 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 8.1

Описание

Apache Guacamole Race Condition vulnerability

A race condition in Guacamole's terminal emulator in versions 0.9.5 through 0.9.10-incubating could allow writes of blocks of printed data to overlap. Such overlapping writes could cause packet data to be misread as the packet length, resulting in the remaining data being written beyond the end of a statically-allocated buffer.

Пакеты

Наименование

org.apache.guacamole:guacamole-common

maven
Затронутые версииВерсия исправления

>= 0.9.5, < 0.9.11-incubating

0.9.11-incubating

EPSS

Процентиль: 71%
0.00687
Низкий

8.1 High

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 8.1
ubuntu
около 8 лет назад

A race condition in Guacamole's terminal emulator in versions 0.9.5 through 0.9.10-incubating could allow writes of blocks of printed data to overlap. Such overlapping writes could cause packet data to be misread as the packet length, resulting in the remaining data being written beyond the end of a statically-allocated buffer.

CVSS3: 8.1
nvd
около 8 лет назад

A race condition in Guacamole's terminal emulator in versions 0.9.5 through 0.9.10-incubating could allow writes of blocks of printed data to overlap. Such overlapping writes could cause packet data to be misread as the packet length, resulting in the remaining data being written beyond the end of a statically-allocated buffer.

CVSS3: 8.1
debian
около 8 лет назад

A race condition in Guacamole's terminal emulator in versions 0.9.5 th ...

EPSS

Процентиль: 71%
0.00687
Низкий

8.1 High

CVSS3

Дефекты

CWE-362