Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ghqg-gfm6-qhh6

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when using the netpbm library, allows remote attackers to execute arbitrary code via a PNM file with large width and height values, which leads to a heap-based buffer overflow.

Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when using the netpbm library, allows remote attackers to execute arbitrary code via a PNM file with large width and height values, which leads to a heap-based buffer overflow.

EPSS

Процентиль: 94%
0.14342
Средний

9.8 Critical

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 20 лет назад

Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when using the netpbm library, allows remote attackers to execute arbitrary code via a PNM file with large width and height values, which leads to a heap-based buffer overflow.

CVSS3: 9.8
nvd
больше 20 лет назад

Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when using the netpbm library, allows remote attackers to execute arbitrary code via a PNM file with large width and height values, which leads to a heap-based buffer overflow.

CVSS3: 9.8
debian
больше 20 лет назад

Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when ...

EPSS

Процентиль: 94%
0.14342
Средний

9.8 Critical

CVSS3

Дефекты

CWE-190