Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-39414

Опубликовано: 08 янв. 2024
Источник: nvd
CVSS3: 7
CVSS3: 7.3
EPSS Низкий

Описание

Multiple integer underflow vulnerabilities exist in the LXT2 lxt2_rd_iter_radix shift operation functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to memory corruption. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the integer underflow when performing the right shift operation.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:tonybybell:gtkwave:3.3.115:*:*:*:*:*:*:*

EPSS

Процентиль: 8%
0.00031
Низкий

7 High

CVSS3

7.3 High

CVSS3

Дефекты

CWE-191
CWE-191

Связанные уязвимости

CVSS3: 7
ubuntu
около 2 лет назад

Multiple integer underflow vulnerabilities exist in the LXT2 lxt2_rd_iter_radix shift operation functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to memory corruption. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the integer underflow when performing the right shift operation.

CVSS3: 7
debian
около 2 лет назад

Multiple integer underflow vulnerabilities exist in the LXT2 lxt2_rd_i ...

CVSS3: 7
github
около 2 лет назад

Multiple integer underflow vulnerabilities exist in the LXT2 lxt2_rd_iter_radix shift operation functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to memory corruption. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the integer underflow when performing the right shift operation.

EPSS

Процентиль: 8%
0.00031
Низкий

7 High

CVSS3

7.3 High

CVSS3

Дефекты

CWE-191
CWE-191