Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-1013

Опубликовано: 18 мар. 2024
Источник: redhat
CVSS3: 7.8
EPSS Низкий

Описание

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can be broken.

Отчет

Red Hat does not ship this vulnerable code in any versions of Red Hat Enterprise Linux.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6unixODBCOut of support scope
Red Hat Enterprise Linux 7compat-unixODBC234Out of support scope
Red Hat Enterprise Linux 7unixODBCOut of support scope
Red Hat Enterprise Linux 8unixODBCNot affected
Red Hat Enterprise Linux 9unixODBCNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-823
https://bugzilla.redhat.com/show_bug.cgi?id=2260823unixODBC: out of bounds stack write due to pointer-to-integer types conversion

EPSS

Процентиль: 18%
0.00058
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 2 года назад

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can be broken.

CVSS3: 7.8
nvd
почти 2 года назад

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can be broken.

CVSS3: 7.8
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7.8
debian
почти 2 года назад

An out-of-bounds stack write flaw was found in unixODBC on 64-bit arch ...

suse-cvrf
больше 1 года назад

Security update for unixODBC

EPSS

Процентиль: 18%
0.00058
Низкий

7.8 High

CVSS3