Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcpv-w686-qv5j

Опубликовано: 18 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An issue was discovered in dbus-broker before 31. It depends on c-uitl/c-shquote to parse the DBus service's Exec line. c-shquote contains a stack-based buffer over-read if a malicious Exec line is supplied.

An issue was discovered in dbus-broker before 31. It depends on c-uitl/c-shquote to parse the DBus service's Exec line. c-shquote contains a stack-based buffer over-read if a malicious Exec line is supplied.

EPSS

Процентиль: 41%
0.00192
Низкий

7.5 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 3 лет назад

An issue was discovered in dbus-broker before 31. It depends on c-uitl/c-shquote to parse the DBus service's Exec line. c-shquote contains a stack-based buffer over-read if a malicious Exec line is supplied.

CVSS3: 7.5
redhat
около 3 лет назад

An issue was discovered in dbus-broker before 31. It depends on c-uitl/c-shquote to parse the DBus service's Exec line. c-shquote contains a stack-based buffer over-read if a malicious Exec line is supplied.

CVSS3: 7.5
nvd
около 3 лет назад

An issue was discovered in dbus-broker before 31. It depends on c-uitl/c-shquote to parse the DBus service's Exec line. c-shquote contains a stack-based buffer over-read if a malicious Exec line is supplied.

CVSS3: 7.5
debian
около 3 лет назад

An issue was discovered in dbus-broker before 31. It depends on c-uitl ...

suse-cvrf
около 3 лет назад

Security update for dbus-broker

EPSS

Процентиль: 41%
0.00192
Низкий

7.5 High

CVSS3

Дефекты

CWE-125