Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g93w-7xh8-gh45

Опубликовано: 11 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 9.8

Описание

Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to execute arbitrary code via a crafted OFF file with an overlong initial token processed by the VHACD test utility or invoked indirectly through PyBullet's vhacd function.

Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to execute arbitrary code via a crafted OFF file with an overlong initial token processed by the VHACD test utility or invoked indirectly through PyBullet's vhacd function.

EPSS

Процентиль: 61%
0.00406
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-120
CWE-787

Связанные уязвимости

CVSS3: 9.8
nvd
6 месяцев назад

Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to execute arbitrary code via a crafted OFF file with an overlong initial token processed by the VHACD test utility or invoked indirectly through PyBullet's vhacd function.

EPSS

Процентиль: 61%
0.00406
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-120
CWE-787