Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8857-6ch2-mpr7

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The getCanonicalPath function in Windows NT 4.0 may free memory that it does not own and cause heap corruption, which allows attackers to cause a denial of service (crash) via requests that cause a long file name to be passed to getCanonicalPath, as demonstrated on the IBM JVM using a long string to the java.io.getCanonicalPath Java method.

The getCanonicalPath function in Windows NT 4.0 may free memory that it does not own and cause heap corruption, which allows attackers to cause a denial of service (crash) via requests that cause a long file name to be passed to getCanonicalPath, as demonstrated on the IBM JVM using a long string to the java.io.getCanonicalPath Java method.

EPSS

Процентиль: 89%
0.04454
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

The getCanonicalPath function in Windows NT 4.0 may free memory that it does not own and cause heap corruption, which allows attackers to cause a denial of service (crash) via requests that cause a long file name to be passed to getCanonicalPath, as demonstrated on the IBM JVM using a long string to the java.io.getCanonicalPath Java method.

EPSS

Процентиль: 89%
0.04454
Низкий