Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fqq3-4hx4-vff7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tech 1 (aka Doom engine) allows arbitrary code execution via an unsafe usage of fscanf, because it does not limit the number of characters to be read in a format argument.

A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tech 1 (aka Doom engine) allows arbitrary code execution via an unsafe usage of fscanf, because it does not limit the number of characters to be read in a format argument.

EPSS

Процентиль: 80%
0.01454
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 5 лет назад

A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tech 1 (aka Doom engine) allows arbitrary code execution via an unsafe usage of fscanf, because it does not limit the number of characters to be read in a format argument.

CVSS3: 9.8
nvd
больше 5 лет назад

A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tech 1 (aka Doom engine) allows arbitrary code execution via an unsafe usage of fscanf, because it does not limit the number of characters to be read in a format argument.

CVSS3: 9.8
debian
больше 5 лет назад

A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tec ...

EPSS

Процентиль: 80%
0.01454
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-120