Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qh8v-25c7-7m9h

Опубликовано: 09 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attacker leaking sensitive information or achieving code execution.

A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attacker leaking sensitive information or achieving code execution.

EPSS

Процентиль: 45%
0.00227
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-119
CWE-770

Связанные уязвимости

CVSS3: 9.8
nvd
больше 2 лет назад

A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attacker leaking sensitive information or achieving code execution.

EPSS

Процентиль: 45%
0.00227
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-119
CWE-770