Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g93w-7xh8-gh45

Опубликовано: 11 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.4

Описание

Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to execute arbitrary code via a crafted OFF file with an overlong initial token processed by the VHACD test utility or invoked indirectly through PyBullet's vhacd function.

Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to execute arbitrary code via a crafted OFF file with an overlong initial token processed by the VHACD test utility or invoked indirectly through PyBullet's vhacd function.

EPSS

Процентиль: 23%
0.00076
Низкий

8.4 High

CVSS4

Дефекты

CWE-120

Связанные уязвимости

nvd
19 дней назад

Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to execute arbitrary code via a crafted OFF file with an overlong initial token processed by the VHACD test utility or invoked indirectly through PyBullet's vhacd function.

EPSS

Процентиль: 23%
0.00076
Низкий

8.4 High

CVSS4

Дефекты

CWE-120