Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vfgv-q9rw-8wc7

Опубликовано: 25 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

YASM v1.3.0 was discovered to contain a heap overflow via the function handle_dot_label at /nasm/nasm-token.re.

YASM v1.3.0 was discovered to contain a heap overflow via the function handle_dot_label at /nasm/nasm-token.re.

EPSS

Процентиль: 13%
0.00043
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 3 года назад

YASM v1.3.0 was discovered to contain a heap overflow via the function handle_dot_label at /nasm/nasm-token.re. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not designed to run untrusted code.

CVSS3: 5.5
nvd
почти 3 года назад

YASM v1.3.0 was discovered to contain a heap overflow via the function handle_dot_label at /nasm/nasm-token.re. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not designed to run untrusted code.

CVSS3: 5.5
debian
почти 3 года назад

YASM v1.3.0 was discovered to contain a heap overflow via the function ...

EPSS

Процентиль: 13%
0.00043
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-787