Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x24c-w26v-w8jg

Опубликовано: 29 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.9

Описание

In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was not accounting for the separator inserted between processor features. If the output buffer supplied to this function was incorrectly sized, failing to account for the separator when determining when a write to the buffer was safe could lead to a buffer overflow. This issue is fixed in Eclipse OMR version 0.8.0.

In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was not accounting for the separator inserted between processor features. If the output buffer supplied to this function was incorrectly sized, failing to account for the separator when determining when a write to the buffer was safe could lead to a buffer overflow. This issue is fixed in Eclipse OMR version 0.8.0.

EPSS

Процентиль: 13%
0.00042
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-131

Связанные уязвимости

nvd
10 дней назад

In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was not accounting for the separator inserted between processor features. If the output buffer supplied to this function was incorrectly sized, failing to account for the separator when determining when a write to the buffer was safe could lead to a buffer overflow. This issue is fixed in Eclipse OMR version 0.8.0.

EPSS

Процентиль: 13%
0.00042
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-131