Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xj9f-6qqc-cpfp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ShiftBytes. The highest threat from this vulnerability is to data confidentiality and to the service availability.

A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ShiftBytes. The highest threat from this vulnerability is to data confidentiality and to the service availability.

EPSS

Процентиль: 31%
0.00116
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 4 лет назад

A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in ShiftBytes().

CVSS3: 9.1
redhat
почти 7 лет назад

A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in ShiftBytes().

CVSS3: 9.1
nvd
около 4 лет назад

A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in ShiftBytes().

CVSS3: 9.1
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 9.1
debian
около 4 лет назад

A heap-based buffer overflow was found in libwebp in versions before 1 ...

EPSS

Процентиль: 31%
0.00116
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-125