Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x54c-x29c-rpr5

Опубликовано: 02 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).

GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).

EPSS

Процентиль: 53%
0.003
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 4 лет назад

GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).

CVSS3: 5.5
nvd
около 4 лет назад

GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).

CVSS3: 5.5
debian
около 4 лет назад

GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::C ...

CVSS3: 6.5
fstec
около 4 лет назад

Уязвимость функции PCIDSK::CPCIDSKFile::ReadFromFile библиотеки-транслятора для геопространственных данных GDAL, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 53%
0.003
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-787