Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-26923

Опубликовано: 28 мар. 2023
Источник: nvd
CVSS3: 7
EPSS Низкий

Описание

Musescore 3.0 to 4.0.1 has a stack buffer overflow vulnerability that occurs when reading misconfigured midi files. If attacker can additional information, attacker can execute arbitrary code.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:musescore:musescore:*:*:*:*:*:*:*:*
Версия от 3.0 (включая) до 4.0.1 (включая)

EPSS

Процентиль: 17%
0.00055
Низкий

7 High

CVSS3

Дефекты

CWE-787
CWE-787

Связанные уязвимости

CVSS3: 7
ubuntu
почти 3 года назад

Musescore 3.0 to 4.0.1 has a stack buffer overflow vulnerability that occurs when reading misconfigured midi files. If attacker can additional information, attacker can execute arbitrary code.

CVSS3: 7
debian
почти 3 года назад

Musescore 3.0 to 4.0.1 has a stack buffer overflow vulnerability that ...

CVSS3: 7
github
почти 3 года назад

Musescore 3.0 to 4.0.1 has a stack buffer overflow vulnerability that occurs when reading misconfigured midi files. If attacker can additional information, attacker can execute arbitrary code.

EPSS

Процентиль: 17%
0.00055
Низкий

7 High

CVSS3

Дефекты

CWE-787
CWE-787