Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wp28-phrj-p6rh

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving a command character in an href.

Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving a command character in an href.

EPSS

Процентиль: 91%
0.06793
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 10 лет назад

Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving a command character in an href.

redhat
больше 10 лет назад

Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving a command character in an href.

nvd
больше 10 лет назад

Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving a command character in an href.

debian
больше 10 лет назад

Heap-based buffer overflow in the ParseValue function in lexer.c in ti ...

suse-cvrf
больше 10 лет назад

Security update for tidy

EPSS

Процентиль: 91%
0.06793
Низкий

Дефекты

CWE-119