Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hcp2-8j7p-77m4

Опубликовано: 01 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

In Tencent QQ through 9.7.8.29039 and TIM through 3.4.7.22084, QQProtect.exe and QQProtectEngine.dll do not validate pointers from inter-process communication, which leads to a write-what-where condition.

In Tencent QQ through 9.7.8.29039 and TIM through 3.4.7.22084, QQProtect.exe and QQProtectEngine.dll do not validate pointers from inter-process communication, which leads to a write-what-where condition.

EPSS

Процентиль: 87%
0.03507
Низкий

7.8 High

CVSS3

Дефекты

CWE-763

Связанные уязвимости

CVSS3: 7.8
nvd
больше 2 лет назад

In Tencent QQ through 9.7.8.29039 and TIM through 3.4.7.22084, QQProtect.exe and QQProtectEngine.dll do not validate pointers from inter-process communication, which leads to a write-what-where condition.

EPSS

Процентиль: 87%
0.03507
Низкий

7.8 High

CVSS3

Дефекты

CWE-763