Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mc92-59cv-mjwh

Опубликовано: 14 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 7
CVSS3: 7.3

Описание

A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can exploit this issue to disclose information and to execute arbitrary code. To exploit this vulnerability a legitimate user must open a malicious DFT file.

A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can exploit this issue to disclose information and to execute arbitrary code. To exploit this vulnerability a legitimate user must open a malicious DFT file.

EPSS

Процентиль: 12%
0.00041
Низкий

7 High

CVSS4

7.3 High

CVSS3

Дефекты

CWE-1284

Связанные уязвимости

CVSS3: 7.3
nvd
около 1 года назад

A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can exploit this issue to disclose information and to execute arbitrary code. To exploit this vulnerability a legitimate user must open a malicious DFT file.

EPSS

Процентиль: 12%
0.00041
Низкий

7 High

CVSS4

7.3 High

CVSS3

Дефекты

CWE-1284