Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hrp-2fqv-gvrx

Опубликовано: 10 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6

Описание

A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handler component. When a user drags and drops a directory path of exactly 259 characters without a trailing backslash, the application appends a backslash and null terminator without proper bounds checking, resulting in a stack buffer overflow and application crash (STATUS_STACK_BUFFER_OVERRUN).

A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handler component. When a user drags and drops a directory path of exactly 259 characters without a trailing backslash, the application appends a backslash and null terminator without proper bounds checking, resulting in a stack buffer overflow and application crash (STATUS_STACK_BUFFER_OVERRUN).

EPSS

Процентиль: 6%
0.00166
Низкий

6 Medium

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 6
nvd
5 месяцев назад

A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handler component. When a user drags and drops a directory path of exactly 259 characters without a trailing backslash, the application appends a backslash and null terminator without proper bounds checking, resulting in a stack buffer overflow and application crash (STATUS_STACK_BUFFER_OVERRUN).

EPSS

Процентиль: 6%
0.00166
Низкий

6 Medium

CVSS3

Дефекты

CWE-121