Логотип exploitDog
bind:"CVE-2022-44617" OR bind:"CVE-2022-46285" OR bind:"CVE-2022-4883"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-44617" OR bind:"CVE-2022-46285" OR bind:"CVE-2022-4883"

Количество 29

Количество 29

redhat логотип

CVE-2022-4883

почти 3 года назад

A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2022-4883

почти 3 года назад

A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2022-4883

почти 3 года назад

A flaw was found in libXpm. When processing files with .Z or .gz extensions the library calls external programs to compress and uncompress files relying on the PATH environment variable to find these programs which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2022-4883

почти 3 года назад

A flaw was found in libXpm. When processing files with .Z or .gz exten ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-x5vr-48jx-h8wp

почти 3 года назад

A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2023-00390

почти 3 года назад

Уязвимость функции ParseComment() библиотеки для работы с файлами изображений X Pixmap (XPM) libXpm, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-75px-q76w-83rc

почти 3 года назад

A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.8
EPSS: Низкий
oracle-oval логотип

ELSA-2023-0377

почти 3 года назад

ELSA-2023-0377: libXpm security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2023-00388

почти 3 года назад

Уязвимость библиотеки для работы с файлами изображений X Pixmap (XPM) libXpm, связанная с недоверенными путями поиска, позволяющая нарушителю выполнять произвольный код с повышенными привилегиями

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2022-4883

A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.1
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2022-4883

A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.8
0%
Низкий
почти 3 года назад
msrc логотип
CVE-2022-4883

A flaw was found in libXpm. When processing files with .Z or .gz extensions the library calls external programs to compress and uncompress files relying on the PATH environment variable to find these programs which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.8
0%
Низкий
почти 3 года назад
debian логотип
CVE-2022-4883

A flaw was found in libXpm. When processing files with .Z or .gz exten ...

CVSS3: 8.8
0%
Низкий
почти 3 года назад
github логотип
GHSA-x5vr-48jx-h8wp

A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
fstec логотип
BDU:2023-00390

Уязвимость функции ParseComment() библиотеки для работы с файлами изображений X Pixmap (XPM) libXpm, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-75px-q76w-83rc

A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CVSS3: 8.8
0%
Низкий
почти 3 года назад
oracle-oval логотип
ELSA-2023-0377

ELSA-2023-0377: libXpm security update (IMPORTANT)

почти 3 года назад
fstec логотип
BDU:2023-00388

Уязвимость библиотеки для работы с файлами изображений X Pixmap (XPM) libXpm, связанная с недоверенными путями поиска, позволяющая нарушителю выполнять произвольный код с повышенными привилегиями

CVSS3: 7.1
0%
Низкий
почти 3 года назад

Уязвимостей на страницу