Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x6qm-gh33-v932

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Integer signedness error in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via crafted dimensions of a skin file, leading to a heap-based buffer overflow, as demonstrated using a BMP image.

Integer signedness error in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via crafted dimensions of a skin file, leading to a heap-based buffer overflow, as demonstrated using a BMP image.

EPSS

Процентиль: 91%
0.0659
Низкий

Связанные уязвимости

nvd
около 14 лет назад

Integer signedness error in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via crafted dimensions of a skin file, leading to a heap-based buffer overflow, as demonstrated using a BMP image.

EPSS

Процентиль: 91%
0.0659
Низкий