Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-45897

Опубликовано: 28 окт. 2023
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in read_file_dentry_set.

A flaw was found in Exfatprogs, a userspace utility that contains all of the standard utilities for creating, fixing, and debugging the exfat filesystem in the linux system.This issue may allow out-of-bounds memory access such as in read_file_dentry_set. To exploit this vulnerability, the attacker must possess authorization with privileges granting basic user capabilities, and can achieve out-of-bounds memory access.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2246976exfatprogs: exfatprogs allows out-of-bounds memory access

EPSS

Процентиль: 16%
0.00052
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in read_file_dentry_set.

CVSS3: 5.5
nvd
больше 1 года назад

exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in read_file_dentry_set.

CVSS3: 5.5
debian
больше 1 года назад

exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in ...

suse-cvrf
больше 1 года назад

Security update for exfatprogs

CVSS3: 5.5
redos
около 1 года назад

Уязвимость exfatprogs

EPSS

Процентиль: 16%
0.00052
Низкий

5.5 Medium

CVSS3