Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9825-56cx-cfg6

Опубликовано: 10 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.3

Описание

FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values in data to the IPC socket. This occurs in ReadParams in fcgiapp.c.

FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values in data to the IPC socket. This occurs in ReadParams in fcgiapp.c.

EPSS

Процентиль: 17%
0.00056
Низкий

9.3 Critical

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 9.3
ubuntu
8 месяцев назад

FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values in data to the IPC socket. This occurs in ReadParams in fcgiapp.c.

CVSS3: 9.3
nvd
8 месяцев назад

FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values in data to the IPC socket. This occurs in ReadParams in fcgiapp.c.

CVSS3: 9.3
msrc
4 месяца назад

Описание отсутствует

CVSS3: 9.3
debian
8 месяцев назад

FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (an ...

suse-cvrf
около 1 месяца назад

Security update for FastCGI

EPSS

Процентиль: 17%
0.00056
Низкий

9.3 Critical

CVSS3

Дефекты

CWE-190