Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-6949

Опубликовано: 16 мар. 2017
Источник: nvd
CVSS3: 8.1
CVSS2: 6.8
EPSS Низкий

Описание

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a nonstandard CHICKEN-specific extension to allocate an SRFI-4 vector in unmanaged memory, the vector size would be used in unsanitised form as an argument to malloc(). With an unexpected size, the impact may have been a segfault or buffer overflow.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:call-cc:chicken:4.12.0:*:*:*:*:*:*:*

EPSS

Процентиль: 66%
0.00516
Низкий

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.1
ubuntu
почти 9 лет назад

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a nonstandard CHICKEN-specific extension to allocate an SRFI-4 vector in unmanaged memory, the vector size would be used in unsanitised form as an argument to malloc(). With an unexpected size, the impact may have been a segfault or buffer overflow.

CVSS3: 8.1
debian
почти 9 лет назад

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a ...

CVSS3: 8.1
github
больше 3 лет назад

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a nonstandard CHICKEN-specific extension to allocate an SRFI-4 vector in unmanaged memory, the vector size would be used in unsanitised form as an argument to malloc(). With an unexpected size, the impact may have been a segfault or buffer overflow.

EPSS

Процентиль: 66%
0.00516
Низкий

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-119