Описание
thread_call in sqbaselib.cpp in SQUIRREL 3.2 lacks a certain sq_reservestack call.
thread_call in sqbaselib.cpp in SQUIRREL 3.2 lacks a certain sq_reservestack call.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2022-30292
- https://github.com/albertodemichelis/squirrel/commit/a6413aa690e0bdfef648c68693349a7b878fe60d
- https://github.com/sprushed/CVE-2022-30292
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BV7SJJ44AGAX4ILIVPREIXPJ2GOG3FKV
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DMIKSVTKNU5FRCUUNAYMCQLOJA3K3S2I
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/M3FQILX7UUEERSDPMZP3MKGTMY2E7ESU
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WBUYGYXDQX3OSAYHP4TCG3JS7PJTIE75
Связанные уязвимости
CVSS3: 10
ubuntu
почти 4 года назад
Heap-based buffer overflow in sqbaselib.cpp in SQUIRREL 3.2 due to lack of a certain sq_reservestack call.
CVSS3: 10
nvd
почти 4 года назад
Heap-based buffer overflow in sqbaselib.cpp in SQUIRREL 3.2 due to lack of a certain sq_reservestack call.
CVSS3: 10
debian
почти 4 года назад
Heap-based buffer overflow in sqbaselib.cpp in SQUIRREL 3.2 due to lac ...
CVSS3: 10
fstec
почти 4 года назад
Уязвимость функции thread_call() интерпретатора языка программирования Squirrel, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код