Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m39h-w67h-425w

Опубликовано: 27 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In pvmp3_get_main_data_size of pvmp3_get_main_data_size.cpp, there is a possible buffer overread due to a missing bounds check. This could lead to remote information disclosure of global static variables with no additional execution privileges needed. User interaction is not needed for exploitation.

In pvmp3_get_main_data_size of pvmp3_get_main_data_size.cpp, there is a possible buffer overread due to a missing bounds check. This could lead to remote information disclosure of global static variables with no additional execution privileges needed. User interaction is not needed for exploitation.

EPSS

Процентиль: 54%
0.00318
Низкий

7.5 High

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 года назад

In pvmp3_get_main_data_size of pvmp3_get_main_data_size.cpp, there is a possible buffer overread due to a missing bounds check. This could lead to remote information disclosure of global static variables with no additional execution privileges needed. User interaction is not needed for exploitation.

EPSS

Процентиль: 54%
0.00318
Низкий

7.5 High

CVSS3

Дефекты

CWE-120