Логотип exploitDog
bind:"GHSA-5pmr-hjgq-832v" OR bind:"CVE-2024-42415"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-5pmr-hjgq-832v" OR bind:"CVE-2024-42415"

Количество 11

Количество 11

github логотип

GHSA-5pmr-hjgq-832v

9 месяцев назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
ubuntu логотип

CVE-2024-42415

9 месяцев назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
redhat логотип

CVE-2024-42415

9 месяцев назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
nvd логотип

CVE-2024-42415

9 месяцев назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
debian логотип

CVE-2024-42415

9 месяцев назад

An integer overflow vulnerability exists in the Compound Document Bina ...

CVSS3: 8.4
EPSS: Низкий
fstec логотип

BDU:2024-08625

10 месяцев назад

Уязвимость библиотеки структурированных файлов The GNOME Project libgsf, связанная с переполнением целых чисел на основе динамической памяти, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3922-1

8 месяцев назад

Security update for libgsf

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3921-1

8 месяцев назад

Security update for libgsf

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3920-1

8 месяцев назад

Security update for libgsf

EPSS: Низкий
redos логотип

ROS-20241021-02

8 месяцев назад

Множественные уязвимости libgsf

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3770-1

8 месяцев назад

Security update for libgsf

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-5pmr-hjgq-832v

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
9 месяцев назад
ubuntu логотип
CVE-2024-42415

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
9 месяцев назад
redhat логотип
CVE-2024-42415

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2024-42415

An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G Structured File Library (libgsf). A specially crafted file can result in an integer overflow that allows for a heap-based buffer overflow when processing the sector allocation table. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
9 месяцев назад
debian логотип
CVE-2024-42415

An integer overflow vulnerability exists in the Compound Document Bina ...

CVSS3: 8.4
0%
Низкий
9 месяцев назад
fstec логотип
BDU:2024-08625

Уязвимость библиотеки структурированных файлов The GNOME Project libgsf, связанная с переполнением целых чисел на основе динамической памяти, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3922-1

Security update for libgsf

8 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3921-1

Security update for libgsf

8 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3920-1

Security update for libgsf

8 месяцев назад
redos логотип
ROS-20241021-02

Множественные уязвимости libgsf

CVSS3: 7.8
8 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3770-1

Security update for libgsf

8 месяцев назад

Уязвимостей на страницу