Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fgx7-5j8x-cj53

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.

The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.

EPSS

Процентиль: 88%
0.04069
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 8 лет назад

The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.

CVSS3: 5.5
redhat
больше 8 лет назад

The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.

CVSS3: 5.5
nvd
больше 8 лет назад

The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.

CVSS3: 5.5
debian
больше 8 лет назад

The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, ...

suse-cvrf
почти 8 лет назад

Security update for clamav

EPSS

Процентиль: 88%
0.04069
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125