Логотип exploitDog
bind:"GHSA-7m28-hv5x-hp65" OR bind:"CVE-2024-36474"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-7m28-hv5x-hp65" OR bind:"CVE-2024-36474"

Количество 11

Количество 11

github логотип

GHSA-7m28-hv5x-hp65

около 1 года назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
ubuntu логотип

CVE-2024-36474

около 1 года назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
redhat логотип

CVE-2024-36474

около 1 года назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
nvd логотип

CVE-2024-36474

около 1 года назад

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
EPSS: Низкий
debian логотип

CVE-2024-36474

около 1 года назад

An integer overflow vulnerability exists in the Compound Document Bina ...

CVSS3: 8.4
EPSS: Низкий
fstec логотип

BDU:2024-08615

больше 1 года назад

Уязвимость библиотеки структурированных файлов GNOME Project G libgsf, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3922-1

около 1 года назад

Security update for libgsf

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3921-1

около 1 года назад

Security update for libgsf

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3920-1

около 1 года назад

Security update for libgsf

EPSS: Низкий
redos логотип

ROS-20241021-02

около 1 года назад

Множественные уязвимости libgsf

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3770-1

около 1 года назад

Security update for libgsf

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-7m28-hv5x-hp65

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-36474

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-36474

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-36474

An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured File Library (libgsf) version v1.14.52. A specially crafted file can result in an integer overflow when processing the directory from the file that allows for an out-of-bounds index to be used when reading and writing to an array. This can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-36474

An integer overflow vulnerability exists in the Compound Document Bina ...

CVSS3: 8.4
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-08615

Уязвимость библиотеки структурированных файлов GNOME Project G libgsf, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3922-1

Security update for libgsf

около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3921-1

Security update for libgsf

около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3920-1

Security update for libgsf

около 1 года назад
redos логотип
ROS-20241021-02

Множественные уязвимости libgsf

CVSS3: 7.8
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3770-1

Security update for libgsf

около 1 года назад

Уязвимостей на страницу