Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-40402

Опубликовано: 14 апр. 2022
Источник: nvd
CVSS3: 9.3
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

An out-of-bounds read vulnerability exists in the RS-274X aperture macro multiple outline primitives functionality of Gerbv 2.7.0 and dev (commit b5f1eacd), and Gerbv forked 2.7.1 and 2.8.0. A specially-crafted Gerber file can lead to information disclosure. An attacker can provide a malicious file to trigger this vulnerability.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gerbv_project:gerbv:2.7.0:-:*:*:*:*:*:*
cpe:2.3:a:gerbv_project:gerbv:2.7.0:dev:*:*:*:*:*:*
cpe:2.3:a:gerbv_project:gerbv:2.7.1:-:*:*:*:*:*:*
cpe:2.3:a:gerbv_project:gerbv:2.8.0:-:*:*:*:*:*:*

EPSS

Процентиль: 43%
0.0021
Низкий

9.3 Critical

CVSS3

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-755
CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 4 года назад

An out-of-bounds read vulnerability exists in the RS-274X aperture macro multiple outline primitives functionality of Gerbv 2.7.0 and dev (commit b5f1eacd), and Gerbv forked 2.7.1 and 2.8.0. A specially-crafted Gerber file can lead to information disclosure. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 7.5
debian
почти 4 года назад

An out-of-bounds read vulnerability exists in the RS-274X aperture mac ...

CVSS3: 7.5
github
почти 4 года назад

An out-of-bounds read vulnerability exists in the RS-274X aperture macro multiple outline primitives functionality of Gerbv 2.7.0 and dev (commit b5f1eacd), and Gerbv forked 2.7.1 and 2.8.0. A specially-crafted Gerber file can lead to information disclosure. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 43%
0.0021
Низкий

9.3 Critical

CVSS3

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-755
CWE-125