Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q3jv-fxmp-qgj5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Lack of validation on data read from guest memory in IntPeGetDirectory, IntPeParseUnwindData, IntLogExceptionRecord, IntKsymExpandSymbol and IntLixTaskDumpTree may lead to out-of-bounds read or it could cause DoS due to integer-overflor (IntPeGetDirectory), TOCTOU (IntPeParseUnwindData) or insufficient validations.

Lack of validation on data read from guest memory in IntPeGetDirectory, IntPeParseUnwindData, IntLogExceptionRecord, IntKsymExpandSymbol and IntLixTaskDumpTree may lead to out-of-bounds read or it could cause DoS due to integer-overflor (IntPeGetDirectory), TOCTOU (IntPeParseUnwindData) or insufficient validations.

EPSS

Процентиль: 14%
0.00045
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.5
nvd
около 5 лет назад

Lack of validation on data read from guest memory in IntPeGetDirectory, IntPeParseUnwindData, IntLogExceptionRecord, IntKsymExpandSymbol and IntLixTaskDumpTree may lead to out-of-bounds read or it could cause DoS due to integer-overflor (IntPeGetDirectory), TOCTOU (IntPeParseUnwindData) or insufficient validations.

EPSS

Процентиль: 14%
0.00045
Низкий

Дефекты

CWE-20