Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-1534

Опубликовано: 29 апр. 2022
Источник: nvd
CVSS3: 6.6
CVSS3: 7.1
CVSS2: 3.6
EPSS Низкий

Описание

Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:libmobi_project:libmobi:*:*:*:*:*:*:*:*
Версия до 0.11 (исключая)

EPSS

Процентиль: 33%
0.00126
Низкий

6.6 Medium

CVSS3

7.1 High

CVSS3

3.6 Low

CVSS2

Дефекты

CWE-126
CWE-125

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 4 года назад

Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.

CVSS3: 7.1
debian
почти 4 года назад

Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszews ...

CVSS3: 7.1
github
почти 4 года назад

Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.

EPSS

Процентиль: 33%
0.00126
Низкий

6.6 Medium

CVSS3

7.1 High

CVSS3

3.6 Low

CVSS2

Дефекты

CWE-126
CWE-125