Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gf6q-7pjq-pfq7

Опубликовано: 02 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.

EPSS

Процентиль: 26%
0.00091
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 3 лет назад

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.

CVSS3: 5.5
redhat
почти 6 лет назад

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.

CVSS3: 5.5
nvd
больше 3 лет назад

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggered via a crafted X3F file.

CVSS3: 5.5
debian
больше 3 лет назад

In LibRaw, there is an out-of-bounds write vulnerability within the "n ...

CVSS3: 5.5
fstec
больше 5 лет назад

Уязвимость функции new_node() (libraw\src\x3f\x3f_utils_patched.cpp) библиотеки для обработки изображений LibRaw, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 26%
0.00091
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-787