Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vvqr-c837-hr5q

Опубликовано: 03 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

EPSS

Процентиль: 17%
0.00258
Низкий

7.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 1 года назад

In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
nvd
больше 1 года назад

In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
debian
больше 1 года назад

In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds ...

CVSS3: 7.8
fstec
около 2 лет назад

Уязвимость компонента SkRegion.cpp веб-браузера Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

suse-cvrf
больше 1 года назад

Security update for MozillaFirefox

EPSS

Процентиль: 17%
0.00258
Низкий

7.8 High

CVSS3

Дефекты

CWE-787