Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rv77-8v7v-vhx8

Опубликовано: 24 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

In read_paint of ttcolr.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-254803162

In read_paint of ttcolr.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-254803162

EPSS

Процентиль: 6%
0.00025
Низкий

7.1 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.1
nvd
почти 3 года назад

In read_paint of ttcolr.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-254803162

CVSS3: 7.1
msrc
больше 2 лет назад

Описание отсутствует

EPSS

Процентиль: 6%
0.00025
Низкий

7.1 High

CVSS3

Дефекты

CWE-125