Описание
A memory corruption vulnerability exists in the VHD File Format parsing CXSPARSE record functionality of PowerISO PowerISO 8.3. A specially-crafted file can lead to an out-of-bounds write. A victim needs to open a malicious file to trigger this vulnerability.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:poweriso:poweriso:8.3:*:*:*:*:*:*:*
EPSS
Процентиль: 41%
0.00195
Низкий
7.8 High
CVSS3
7.8 High
CVSS3
Дефекты
CWE-787
CWE-787
Связанные уязвимости
CVSS3: 7.8
github
около 3 лет назад
A memory corruption vulnerability exists in the VHD File Format parsing CXSPARSE record functionality of PowerISO PowerISO 8.3. A specially-crafted file can lead to an out-of-bounds write. A victim needs to open a malicious file to trigger this vulnerability.
EPSS
Процентиль: 41%
0.00195
Низкий
7.8 High
CVSS3
7.8 High
CVSS3
Дефекты
CWE-787
CWE-787