Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c9qr-jrpq-4qqr

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer overflow.

Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer overflow.

EPSS

Процентиль: 76%
0.00938
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-191

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 9 лет назад

Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer overflow.

CVSS3: 9.8
nvd
около 9 лет назад

Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer overflow.

CVSS3: 9.8
debian
около 9 лет назад

Integer underflow in header.c in lha allows remote attackers to have u ...

suse-cvrf
больше 9 лет назад

Security update for lha

EPSS

Процентиль: 76%
0.00938
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-191