Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-27788

Опубликовано: 18 авг. 2022
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

An out-of-bounds read access vulnerability was discovered in UPX in PackLinuxElf64::canPack() function of p_lx_elf.cpp file. An attacker with a crafted input file could trigger this issue that could cause a crash leading to a denial of service.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:upx:upx:*:*:*:*:*:*:*:*
Версия до 3.96 (исключая)

EPSS

Процентиль: 15%
0.00049
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125
CWE-125

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 3 лет назад

An out-of-bounds read access vulnerability was discovered in UPX in PackLinuxElf64::canPack() function of p_lx_elf.cpp file. An attacker with a crafted input file could trigger this issue that could cause a crash leading to a denial of service.

CVSS3: 5.5
debian
больше 3 лет назад

An out-of-bounds read access vulnerability was discovered in UPX in Pa ...

CVSS3: 5.5
github
больше 3 лет назад

An out-of-bounds read access vulnerability was discovered in UPX in PackLinuxElf64::canPack() function of p_lx_elf.cpp file. An attacker with a crafted input file could trigger this issue that could cause a crash leading to a denial of service.

EPSS

Процентиль: 15%
0.00049
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125
CWE-125