Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-2951

Опубликовано: 13 дек. 2022
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

Altair HyperView Player versions 2021.1.0.27 and prior are vulnerable to improper validation of array index vulnerability during processing of H3D files. A DWORD value from a PoC file is extracted and used as an index to write to a buffer, leading to memory corruption.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:altair:hyperview_player:*:*:*:*:*:*:*:*
Версия до 2021.1.0.27 (включая)

EPSS

Процентиль: 37%
0.00159
Низкий

7.8 High

CVSS3

Дефекты

CWE-129

Связанные уязвимости

CVSS3: 7.8
github
около 3 лет назад

Altair HyperView Player versions 2021.1.0.27 and prior are vulnerable to improper validation of array index vulnerability during processing of H3D files. A DWORD value from a PoC file is extracted and used as an index to write to a buffer, leading to memory corruption.

EPSS

Процентиль: 37%
0.00159
Низкий

7.8 High

CVSS3

Дефекты

CWE-129