Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vpgx-c322-qgw5

Опубликовано: 02 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 9%
0.00033
Низкий

8.4 High

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 8.4
ubuntu
6 месяцев назад

An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
nvd
6 месяцев назад

An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
debian
6 месяцев назад

An integer overflow vulnerability exists in the OLE Document File Allo ...

CVSS3: 8.4
fstec
6 месяцев назад

Уязвимость компонента OLE Document File Allocation Table Parser программы извлечения читаемого текста из файлов MS-Word catdoc, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
redos
около 2 месяцев назад

Множественные уязвимости catdoc

EPSS

Процентиль: 9%
0.00033
Низкий

8.4 High

CVSS3

Дефекты

CWE-190