Описание
Out-of-bounds write in cdfs_open_cue_track in libretro libretro-common latest on all platforms allows remote attackers to execute arbitrary code via a crafted .cue file with a file path exceeding PATH_MAX_LENGTH that is copied using memcpy into a fixed-size buffer.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1.22.2+dfsg-2ubuntu1 |
| esm-apps/bionic | not-affected | code not present |
| esm-apps/focal | not-affected | code not present |
| esm-apps/jammy | not-affected | code not present |
| esm-apps/noble | released | 1.18.0+dfsg-1ubuntu0.1~esm1 |
| esm-apps/resolute | not-affected | 1.22.2+dfsg-2ubuntu1 |
| jammy | not-affected | code not present |
| noble | needed | |
| plucky | ignored | end of life, was needs-triage |
| questing | released | 1.20.0+dfsg-3ubuntu0.1 |
Показывать по
EPSS
9.8 Critical
CVSS3
Связанные уязвимости
Out-of-bounds write in cdfs_open_cue_track in libretro libretro-common latest on all platforms allows remote attackers to execute arbitrary code via a crafted .cue file with a file path exceeding PATH_MAX_LENGTH that is copied using memcpy into a fixed-size buffer.
Out-of-bounds write in cdfs_open_cue_track in libretro libretro-common ...
Out-of-bounds write in cdfs_open_cue_track in libretro libretro-common latest on all platforms allows remote attackers to execute arbitrary code via a crafted .cue file with a file path exceeding PATH_MAX_LENGTH that is copied using memcpy into a fixed-size buffer.
EPSS
9.8 Critical
CVSS3