Описание
In get_global_config_item_addr of gc.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
EPSS
Процентиль: 2%
0.00114
Низкий
8.4 High
CVSS3
Дефекты
CWE-120
Связанные уязвимости
CVSS3: 8.4
github
3 дня назад
In get_global_config_item_addr of gc.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
EPSS
Процентиль: 2%
0.00114
Низкий
8.4 High
CVSS3
Дефекты
CWE-120