Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w5mv-5x6q-jgmp

Опубликовано: 21 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 7.8

Описание

In Eclipse OMR versions 0.2.0 to 0.4.0, some of the z/OS atoe print functions use a constant length buffer for string conversion. If the input format string and arguments are larger than the buffer size then buffer overflow occurs. Beginning in version 0.5.0, the conversion buffers are sized correctly and checked appropriately to prevent buffer overflows.

In Eclipse OMR versions 0.2.0 to 0.4.0, some of the z/OS atoe print functions use a constant length buffer for string conversion. If the input format string and arguments are larger than the buffer size then buffer overflow occurs. Beginning in version 0.5.0, the conversion buffers are sized correctly and checked appropriately to prevent buffer overflows.

EPSS

Процентиль: 8%
0.00031
Низкий

7.1 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
12 месяцев назад

In Eclipse OMR versions 0.2.0 to 0.4.0, some of the z/OS atoe print functions use a constant length buffer for string conversion. If the input format string and arguments are larger than the buffer size then buffer overflow occurs. Beginning in version 0.5.0, the conversion buffers are sized correctly and checked appropriately to prevent buffer overflows.

EPSS

Процентиль: 8%
0.00031
Низкий

7.1 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-787