Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3jr-6mpq-369g

Опубликовано: 12 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

In atf (spm), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06171715; Issue ID: ALPS06171715.

In atf (spm), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06171715; Issue ID: ALPS06171715.

EPSS

Процентиль: 1%
0.00011
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 6.5
nvd
почти 4 года назад

In atf (spm), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06171715; Issue ID: ALPS06171715.

EPSS

Процентиль: 1%
0.00011
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-787