Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-45591

Опубликовано: 05 мар. 2024
Источник: nvd
CVSS3: 7.5
CVSS3: 8.8
EPSS Низкий

Описание

A CWE-122 “Heap-based Buffer Overflow” vulnerability in the “logger_generic” function of the “Ax_rtu” binary allows a remote authenticated attacker to trigger a memory corruption in the context of the binary. This may result in a Denial-of-Service (DoS) condition, possibly in the execution of arbitrary code with the same privileges of the process (root), or have other unspecified impacts on the device. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ailux:imx6:*:*:*:*:*:*:*:*
Версия до 1.0.7-2 (исключая)

EPSS

Процентиль: 81%
0.01663
Низкий

7.5 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-122
CWE-787

Связанные уязвимости

CVSS3: 7.5
github
больше 1 года назад

A CWE-122 “Heap-based Buffer Overflow” vulnerability in the “logger_generic” function of the “Ax_rtu” binary allows a remote authenticated attacker to trigger a memory corruption in the context of the binary. This may result in a Denial-of-Service (DoS) condition, possibly in the execution of arbitrary code with the same privileges of the process (root), or have other unspecified impacts on the device. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.

EPSS

Процентиль: 81%
0.01663
Низкий

7.5 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-122
CWE-787