Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j85r-37ch-rchw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.

Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.

EPSS

Процентиль: 73%
0.00783
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 6 лет назад

Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.

CVSS3: 8.8
nvd
почти 6 лет назад

Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.

CVSS3: 8.8
debian
почти 6 лет назад

Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp. ...

EPSS

Процентиль: 73%
0.00783
Низкий