Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ghp6-q6jg-fc8q

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In GNU Libextractor 1.4, there is an integer signedness error for the chunk size in the EXTRACTOR_nsfe_extract_method function in plugins/nsfe_extractor.c, leading to an infinite loop for a crafted size.

In GNU Libextractor 1.4, there is an integer signedness error for the chunk size in the EXTRACTOR_nsfe_extract_method function in plugins/nsfe_extractor.c, leading to an infinite loop for a crafted size.

EPSS

Процентиль: 61%
0.00408
Низкий

7.5 High

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

In GNU Libextractor 1.4, there is an integer signedness error for the chunk size in the EXTRACTOR_nsfe_extract_method function in plugins/nsfe_extractor.c, leading to an infinite loop for a crafted size.

CVSS3: 7.5
nvd
больше 8 лет назад

In GNU Libextractor 1.4, there is an integer signedness error for the chunk size in the EXTRACTOR_nsfe_extract_method function in plugins/nsfe_extractor.c, leading to an infinite loop for a crafted size.

CVSS3: 7.5
debian
больше 8 лет назад

In GNU Libextractor 1.4, there is an integer signedness error for the ...

EPSS

Процентиль: 61%
0.00408
Низкий

7.5 High

CVSS3

Дефекты

CWE-835