Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m2j5-4f43-v224

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

In mdlactl driver, there is a possible memory corruption due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05673424; Issue ID: ALPS05673424.

In mdlactl driver, there is a possible memory corruption due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05673424; Issue ID: ALPS05673424.

EPSS

Процентиль: 3%
0.00015
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 6.7
nvd
около 4 лет назад

In mdlactl driver, there is a possible memory corruption due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05673424; Issue ID: ALPS05673424.

EPSS

Процентиль: 3%
0.00015
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-269