Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-87rm-8q5w-499g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in OSSEC 3.6.0. An uncontrolled recursion vulnerability in os_xml.c occurs when a large number of opening and closing XML tags is used. Because recursion is used in _ReadElem without restriction, an attacker can trigger a segmentation fault once unmapped memory is reached.

An issue was discovered in OSSEC 3.6.0. An uncontrolled recursion vulnerability in os_xml.c occurs when a large number of opening and closing XML tags is used. Because recursion is used in _ReadElem without restriction, an attacker can trigger a segmentation fault once unmapped memory is reached.

EPSS

Процентиль: 51%
0.0028
Низкий

Дефекты

CWE-674

Связанные уязвимости

CVSS3: 7.5
nvd
почти 5 лет назад

An issue was discovered in OSSEC 3.6.0. An uncontrolled recursion vulnerability in os_xml.c occurs when a large number of opening and closing XML tags is used. Because recursion is used in _ReadElem without restriction, an attacker can trigger a segmentation fault once unmapped memory is reached.

CVSS3: 7.5
debian
почти 5 лет назад

An issue was discovered in OSSEC 3.6.0. An uncontrolled recursion vuln ...

EPSS

Процентиль: 51%
0.0028
Низкий

Дефекты

CWE-674