Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ff5p-8cgp-p5jc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 2.4

Описание

RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit this vulnerability to cause a crash in the library of the affected system.

RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit this vulnerability to cause a crash in the library of the affected system.

EPSS

Процентиль: 31%
0.00116
Низкий

2.4 Low

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 2.4
nvd
больше 6 лет назад

RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit this vulnerability to cause a crash in the library of the affected system.

EPSS

Процентиль: 31%
0.00116
Низкий

2.4 Low

CVSS3

Дефекты

CWE-787