Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7cpx-2f4q-g73f

Опубликовано: 14 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 2

Описание

Netskope is notified about a potential gap in its agent (NS Client) in which a malicious actor could trigger a memory leak by sending a crafted DNS packet to a machine. A successful exploitation may require administrative privileges on the machine, based on the exact configuration. A successful exploit can potentially result in user-controllable memory being leaked in a domain name stored on the local machine.

Netskope is notified about a potential gap in its agent (NS Client) in which a malicious actor could trigger a memory leak by sending a crafted DNS packet to a machine. A successful exploitation may require administrative privileges on the machine, based on the exact configuration. A successful exploit can potentially result in user-controllable memory being leaked in a domain name stored on the local machine.

EPSS

Процентиль: 2%
0.00015
Низкий

2 Low

CVSS4

Дефекты

CWE-125

Связанные уязвимости

nvd
6 месяцев назад

Netskope is notified about a potential gap in its agent (NS Client) in which a malicious actor could trigger a memory leak by sending a crafted DNS packet to a machine. A successful exploitation may require administrative privileges on the machine, based on the exact configuration. A successful exploit can potentially result in user-controllable memory being leaked in a domain name stored on the local machine.

EPSS

Процентиль: 2%
0.00015
Низкий

2 Low

CVSS4

Дефекты

CWE-125