Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fv4p-hrvc-c34g

Опубликовано: 08 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

tap-windows6 driver version 9.26 and earlier does not properly check the size data of incomming write operations which an attacker can use to overflow memory buffers, resulting in a bug check and potentially arbitrary code execution in kernel space

tap-windows6 driver version 9.26 and earlier does not properly check the size data of incomming write operations which an attacker can use to overflow memory buffers, resulting in a bug check and potentially arbitrary code execution in kernel space

EPSS

Процентиль: 88%
0.04282
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 9.8
ubuntu
12 месяцев назад

tap-windows6 driver version 9.26 and earlier does not properly check the size data of incomming write operations which an attacker can use to overflow memory buffers, resulting in a bug check and potentially arbitrary code execution in kernel space

CVSS3: 9.8
nvd
12 месяцев назад

tap-windows6 driver version 9.26 and earlier does not properly check the size data of incomming write operations which an attacker can use to overflow memory buffers, resulting in a bug check and potentially arbitrary code execution in kernel space

CVSS3: 9.8
fstec
больше 1 года назад

Уязвимость драйвера tap-windows6 программного обеспечения OpenVPN операционных систем Windows, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 88%
0.04282
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-190