Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6r64-q62g-cg7v

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

EPSS

Процентиль: 46%
0.00232
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 6.8
ubuntu
больше 8 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 3.1
redhat
почти 9 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 6.8
nvd
больше 8 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 6.8
debian
больше 8 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL functi ...

CVSS3: 6.8
fstec
почти 9 лет назад

Уязвимость функции ptp_unpack_OPL (ptp-pack.c) библиотеки libmtp, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

EPSS

Процентиль: 46%
0.00232
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-190