Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-0459

Опубликовано: 29 мар. 2006
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

flex.skl in Will Estes and John Millaway Fast Lexical Analyzer Generator (flex) before 2.5.33 does not allocate enough memory for grammars containing (1) REJECT statements or (2) trailing context rules, which causes flex to generate code that contains a buffer overflow that might allow context-dependent attackers to execute arbitrary code.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:westes:flex:*:*:*:*:*:*:*:*
Версия до 2.5.32 (включая)

EPSS

Процентиль: 88%
0.0397
Низкий

7.5 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 19 лет назад

flex.skl in Will Estes and John Millaway Fast Lexical Analyzer Generator (flex) before 2.5.33 does not allocate enough memory for grammars containing (1) REJECT statements or (2) trailing context rules, which causes flex to generate code that contains a buffer overflow that might allow context-dependent attackers to execute arbitrary code.

debian
больше 19 лет назад

flex.skl in Will Estes and John Millaway Fast Lexical Analyzer Generat ...

github
больше 3 лет назад

flex.skl in Will Estes and John Millaway Fast Lexical Analyzer Generator (flex) before 2.5.33 does not allocate enough memory for grammars containing (1) REJECT statements or (2) trailing context rules, which causes flex to generate code that contains a buffer overflow that might allow context-dependent attackers to execute arbitrary code.

EPSS

Процентиль: 88%
0.0397
Низкий

7.5 High

CVSS2

Дефекты

CWE-119