Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-20043

Опубликовано: 28 мар. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.4

Описание

NRSS RSS Reader 0.3.9-1 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the -F parameter. Attackers can craft a malicious input with 256 bytes of padding followed by a controlled EIP value to overwrite the return address and achieve code execution.

РелизСтатусПримечание
devel

DNE

esm-apps-legacy/xenial

needs-triage

esm-apps/bionic

needs-triage

esm-apps/xenial

ignored

end of ESM support, was needs-triage
jammy

DNE

noble

DNE

questing

DNE

resolute

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 10%
0.00203
Низкий

8.4 High

CVSS3

Связанные уязвимости

CVSS3: 8.4
nvd
5 месяцев назад

NRSS RSS Reader 0.3.9-1 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the -F parameter. Attackers can craft a malicious input with 256 bytes of padding followed by a controlled EIP value to overwrite the return address and achieve code execution.

CVSS3: 8.4
debian
5 месяцев назад

NRSS RSS Reader 0.3.9-1 contains a stack buffer overflow vulnerability ...

CVSS3: 8.4
github
5 месяцев назад

NRSS RSS Reader 0.3.9-1 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the -F parameter. Attackers can craft a malicious input with 256 bytes of padding followed by a controlled EIP value to overwrite the return address and achieve code execution.

EPSS

Процентиль: 10%
0.00203
Низкий

8.4 High

CVSS3