Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-46052

Опубликовано: 27 мар. 2024
Источник: nvd
CVSS3: 7.1
EPSS Низкий

Описание

Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file. NOTE: this is disputed because there is no expectation that test.c code should be executed with an attacker-controlled configuration file.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:sane-project:sane_backends:1.2.1:*:*:*:*:*:*:*
cpe:2.3:h:sane-project:sane_backends:-:*:*:*:*:*:*:*

EPSS

Процентиль: 17%
0.00055
Низкий

7.1 High

CVSS3

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 2 года назад

Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file. NOTE: this is disputed because there is no expectation that test.c code should be executed with an attacker-controlled configuration file.

CVSS3: 7.1
debian
почти 2 года назад

Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c ...

CVSS3: 7.1
github
почти 2 года назад

Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file. NOTE: this is disputed because there is no expectation that test.c code should be executed with an attacker-controlled configuration file.

EPSS

Процентиль: 17%
0.00055
Низкий

7.1 High

CVSS3

Дефекты

NVD-CWE-noinfo