Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6r64-q62g-cg7v

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

EPSS

Процентиль: 54%
0.00766
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 6.8
ubuntu
около 9 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 3.1
redhat
больше 9 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 6.8
nvd
около 9 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 6.8
debian
около 9 лет назад

An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL functi ...

CVSS3: 6.8
fstec
больше 9 лет назад

Уязвимость функции ptp_unpack_OPL (ptp-pack.c) библиотеки libmtp, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

EPSS

Процентиль: 54%
0.00766
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-190