Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h628-q67p-f6w4

Опубликовано: 02 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 9%
0.00033
Низкий

8.4 High

CVSS3

Дефекты

CWE-191

Связанные уязвимости

CVSS3: 8.4
ubuntu
6 месяцев назад

An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
nvd
6 месяцев назад

An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
debian
6 месяцев назад

An integer underflow vulnerability exists in the OLE Document DIFAT Pa ...

CVSS3: 8.4
fstec
6 месяцев назад

Уязвимость компонента OLE Document DIFAT Parser программы для извлечения читаемого текста из файлов MS-Word catdoc, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
redos
около 2 месяцев назад

Множественные уязвимости catdoc

EPSS

Процентиль: 9%
0.00033
Низкий

8.4 High

CVSS3

Дефекты

CWE-191