Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4rxp-92f9-jpp2

Опубликовано: 31 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The Call Blocker application 6.6.3 for Android incorrectly opens a key component that an attacker can use to inject large amounts of dirty data into the application's database. When the application starts, it loads the data from the database into memory. Once the attacker injects too much data, the application triggers an OOM error and crashes, resulting in a persistent denial of service.

The Call Blocker application 6.6.3 for Android incorrectly opens a key component that an attacker can use to inject large amounts of dirty data into the application's database. When the application starts, it loads the data from the database into memory. Once the attacker injects too much data, the application triggers an OOM error and crashes, resulting in a persistent denial of service.

EPSS

Процентиль: 39%
0.00173
Низкий

7.5 High

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

The Call Blocker application 6.6.3 for Android incorrectly opens a key component that an attacker can use to inject large amounts of dirty data into the application's database. When the application starts, it loads the data from the database into memory. Once the attacker injects too much data, the application triggers an OOM error and crashes, resulting in a persistent denial of service.

EPSS

Процентиль: 39%
0.00173
Низкий

7.5 High

CVSS3

Дефекты

CWE-404