Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7j73-f8pw-v3wq

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

EPSS

Процентиль: 65%
0.00482
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 9 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

CVSS3: 3.3
redhat
около 9 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

CVSS3: 5.5
nvd
около 9 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

CVSS3: 5.5
debian
около 9 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-ta ...

suse-cvrf
больше 1 года назад

Security update for libgsf

EPSS

Процентиль: 65%
0.00482
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-476