Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-38072

Опубликовано: 03 апр. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 6.5

Описание

An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and v0.98.4. A specially-crafted stl file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

needs-triage

esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/noble

needs-triage

esm-apps/xenial

needed

focal

ignored

end of standard support, was needed
jammy

needed

kinetic

ignored

end of life, was needed

Показывать по

EPSS

Процентиль: 27%
0.00096
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
почти 3 года назад

An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and v0.98.4. A specially-crafted stl file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.8
github
почти 3 года назад

ADMesh improper array index validation

EPSS

Процентиль: 27%
0.00096
Низкий

6.5 Medium

CVSS3