Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh8h-mfrv-w6wh

Опубликовано: 23 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

SOUND4 LinkAndShare Transmitter 1.1.2 contains a format string vulnerability that allows attackers to trigger memory stack overflows through maliciously crafted environment variables. Attackers can manipulate the username environment variable with format string payloads to potentially execute arbitrary code and crash the application.

SOUND4 LinkAndShare Transmitter 1.1.2 contains a format string vulnerability that allows attackers to trigger memory stack overflows through maliciously crafted environment variables. Attackers can manipulate the username environment variable with format string payloads to potentially execute arbitrary code and crash the application.

EPSS

Процентиль: 26%
0.00091
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 месяцев назад

SOUND4 LinkAndShare Transmitter 1.1.2 contains a format string vulnerability that allows attackers to trigger memory stack overflows through maliciously crafted environment variables. Attackers can manipulate the username environment variable with format string payloads to potentially execute arbitrary code and crash the application.

EPSS

Процентиль: 26%
0.00091
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-134