Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cvpm-h3w4-gr4m

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it.

AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it.

EPSS

Процентиль: 25%
0.00089
Низкий

Дефекты

CWE-494

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 5 лет назад

AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it.

CVSS3: 5.5
nvd
около 5 лет назад

AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it.

EPSS

Процентиль: 25%
0.00089
Низкий

Дефекты

CWE-494