Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rx7p-m6c3-777g

Опубликовано: 31 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

EPSS

Процентиль: 80%
0.01475
Низкий

7.4 High

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 8.1
ubuntu
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
redhat
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
nvd
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
msrc
12 месяцев назад

Описание отсутствует

CVSS3: 8.1
debian
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local maliciou ...

EPSS

Процентиль: 80%
0.01475
Низкий

7.4 High

CVSS3

Дефекты

CWE-120