Описание
CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
6.2 Medium
CVSS3
Дефекты
Связанные уязвимости
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Уязвимость программных средств для работы с защищенными метаданными Content Authenticity JS SDK и Content Authenticity Rust SDK, связанная с целочисленной потерей значимости, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
6.2 Medium
CVSS3