Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-19905

Опубликовано: 19 дек. 2019
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

NetHack 3.6.x before 3.6.4 is prone to a buffer overflow vulnerability when reading very long lines from configuration files. This affects systems that have NetHack installed suid/sgid, and shared systems that allow users to upload their own configuration files.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nethack:nethack:*:*:*:*:*:*:*:*
Версия от 3.6.0 (включая) до 3.6.4 (исключая)

EPSS

Процентиль: 87%
0.03358
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 6 лет назад

NetHack 3.6.x before 3.6.4 is prone to a buffer overflow vulnerability when reading very long lines from configuration files. This affects systems that have NetHack installed suid/sgid, and shared systems that allow users to upload their own configuration files.

CVSS3: 9.8
debian
около 6 лет назад

NetHack 3.6.x before 3.6.4 is prone to a buffer overflow vulnerability ...

CVSS3: 9.8
github
больше 3 лет назад

NetHack before 3.6.4 is prone to a buffer overflow vulnerability when reading very long lines from configuration files. This affects systems that have NetHack installed suid/sgid, and shared systems that allow users to upload their own configuration files.

EPSS

Процентиль: 87%
0.03358
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-120