Описание
A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can exploit this issue to disclose information and to execute arbitrary code. To exploit this vulnerability a legitimate user must open a malicious DFT file.
EPSS
Процентиль: 12%
0.00041
Низкий
7.3 High
CVSS3
Дефекты
CWE-1284
Связанные уязвимости
CVSS3: 7.3
github
около 1 года назад
A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can exploit this issue to disclose information and to execute arbitrary code. To exploit this vulnerability a legitimate user must open a malicious DFT file.
EPSS
Процентиль: 12%
0.00041
Низкий
7.3 High
CVSS3
Дефекты
CWE-1284