Описание
RenderDoc through 1.26 allows an Integer Overflow with a resultant Buffer Overflow (issue 2 of 2).
RenderDoc through 1.26 allows an Integer Overflow with a resultant Buffer Overflow (issue 2 of 2).
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2023-33864
- https://lists.debian.org/debian-lts-announce/2023/07/msg00023.html
- https://lists.debian.org/debian-lts-announce/2024/12/msg00008.html
- https://renderdoc.org
- https://security.gentoo.org/glsa/202311-10
- https://www.qualys.com/2023/06/06/renderdoc/renderdoc.txt
- http://packetstormsecurity.com/files/172804/RenderDoc-1.26-Local-Privilege-Escalation-Remote-Code-Execution.html
- http://seclists.org/fulldisclosure/2023/Jun/2
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 2 лет назад
StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It uses uint32_t(m_BufferSize-m_InputSize) even though m_InputSize can exceed m_BufferSize.
CVSS3: 9.8
nvd
больше 2 лет назад
StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It uses uint32_t(m_BufferSize-m_InputSize) even though m_InputSize can exceed m_BufferSize.
CVSS3: 9.8
debian
больше 2 лет назад
StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Inte ...