Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4jx6-488q-wrq2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of-bounds read, because it can cause t2p->t_name strings to lack a final '\0' character.

In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of-bounds read, because it can cause t2p->t_name strings to lack a final '\0' character.

EPSS

Процентиль: 58%
0.00362
Низкий

8.1 High

CVSS3

Дефекты

CWE-125
CWE-362

Связанные уязвимости

CVSS3: 8.1
nvd
больше 8 лет назад

In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of-bounds read, because it can cause t2p->t_name strings to lack a final '\0' character.

CVSS3: 8.1
debian
больше 8 лет назад

In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_s ...

EPSS

Процентиль: 58%
0.00362
Низкий

8.1 High

CVSS3

Дефекты

CWE-125
CWE-362