Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5mc3-gwcr-mgc3

Опубликовано: 11 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. Input received over the network cannot trigger this.

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. Input received over the network cannot trigger this.

EPSS

Процентиль: 32%
0.00122
Низкий

8.4 High

CVSS3

Дефекты

CWE-120
CWE-787

Связанные уязвимости

CVSS3: 6.5
ubuntu
9 месяцев назад

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. There is a plausible way to reach this remotely via soup_message_headers_get_content_type (e.g., an application may want to retrieve the content type of a request or response).

CVSS3: 9
redhat
9 месяцев назад

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. There is a plausible way to reach this remotely via soup_message_headers_get_content_type (e.g., an application may want to retrieve the content type of a request or response).

CVSS3: 6.5
nvd
9 месяцев назад

GNOME libsoup before 3.6.1 allows a buffer overflow in applications that perform conversion to UTF-8 in soup_header_parse_param_list_strict. There is a plausible way to reach this remotely via soup_message_headers_get_content_type (e.g., an application may want to retrieve the content type of a request or response).

CVSS3: 8.4
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 6.5
debian
9 месяцев назад

GNOME libsoup before 3.6.1 allows a buffer overflow in applications th ...

EPSS

Процентиль: 32%
0.00122
Низкий

8.4 High

CVSS3

Дефекты

CWE-120
CWE-787