Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwh4-p62h-wq65

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

The convert_to_decimal function in vasnprintf.c in Gnulib before 2018-09-23 has a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing.

The convert_to_decimal function in vasnprintf.c in Gnulib before 2018-09-23 has a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing.

EPSS

Процентиль: 83%
0.02079
Низкий

8.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 7 лет назад

The convert_to_decimal function in vasnprintf.c in Gnulib before 2018-09-23 has a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing.

CVSS3: 3.3
redhat
почти 7 лет назад

The convert_to_decimal function in vasnprintf.c in Gnulib before 2018-09-23 has a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing.

CVSS3: 8.8
nvd
почти 7 лет назад

The convert_to_decimal function in vasnprintf.c in Gnulib before 2018-09-23 has a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing.

CVSS3: 8.8
debian
почти 7 лет назад

The convert_to_decimal function in vasnprintf.c in Gnulib before 2018- ...

EPSS

Процентиль: 83%
0.02079
Низкий

8.8 High

CVSS3

Дефекты

CWE-787