Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r786-p84w-55j2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Integer overflow in the authenticate_post function in CGit before 0.12 allows remote attackers to have unspecified impact via a large value in the Content-Length HTTP header, which triggers a buffer overflow.

Integer overflow in the authenticate_post function in CGit before 0.12 allows remote attackers to have unspecified impact via a large value in the Content-Length HTTP header, which triggers a buffer overflow.

EPSS

Процентиль: 89%
0.04365
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 10 лет назад

Integer overflow in the authenticate_post function in CGit before 0.12 allows remote attackers to have unspecified impact via a large value in the Content-Length HTTP header, which triggers a buffer overflow.

CVSS3: 9.8
nvd
около 10 лет назад

Integer overflow in the authenticate_post function in CGit before 0.12 allows remote attackers to have unspecified impact via a large value in the Content-Length HTTP header, which triggers a buffer overflow.

CVSS3: 9.8
debian
около 10 лет назад

Integer overflow in the authenticate_post function in CGit before 0.12 ...

suse-cvrf
около 10 лет назад

Security update for cgit

EPSS

Процентиль: 89%
0.04365
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-119