Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m334-hpp6-wjh3

Опубликовано: 12 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Integer overflow in the index.c:read_entry() function while decompressing a compressed prefix length in libgit2 before v0.26.2 allows an attacker to cause a denial of service (out-of-bounds read) via a crafted repository index file.

Integer overflow in the index.c:read_entry() function while decompressing a compressed prefix length in libgit2 before v0.26.2 allows an attacker to cause a denial of service (out-of-bounds read) via a crafted repository index file.

EPSS

Процентиль: 70%
0.01423
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 8 лет назад

Integer overflow in the index.c:read_entry() function while decompressing a compressed prefix length in libgit2 before v0.26.2 allows an attacker to cause a denial of service (out-of-bounds read) via a crafted repository index file.

CVSS3: 4.3
redhat
больше 8 лет назад

Integer overflow in the index.c:read_entry() function while decompressing a compressed prefix length in libgit2 before v0.26.2 allows an attacker to cause a denial of service (out-of-bounds read) via a crafted repository index file.

CVSS3: 6.5
nvd
больше 8 лет назад

Integer overflow in the index.c:read_entry() function while decompressing a compressed prefix length in libgit2 before v0.26.2 allows an attacker to cause a denial of service (out-of-bounds read) via a crafted repository index file.

CVSS3: 6.5
debian
больше 8 лет назад

Integer overflow in the index.c:read_entry() function while decompress ...

CVSS3: 6.5
fstec
больше 8 лет назад

Уязвимость функции read_entry() компонента index.c реализации методов Git на языке C Libgit2, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 70%
0.01423
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-190