Количество 5
Количество 5
CVE-2023-32668
LuaTeX before 1.17.0 allows a document (compiled with the default settings) to make arbitrary network requests. This occurs because full access to the socket library is permitted by default, as stated in the documentation. This also affects TeX Live before 2023 r66984 and MiKTeX before 23.5.
CVE-2023-32668
LuaTeX before 1.17.0 allows a document (compiled with the default settings) to make arbitrary network requests. This occurs because full access to the socket library is permitted by default, as stated in the documentation. This also affects TeX Live before 2023 r66984 and MiKTeX before 23.5.
CVE-2023-32668
LuaTeX before 1.17.0 allows a document (compiled with the default sett ...
GHSA-hm67-jh95-48xh
LuaTeX before 1.17.0 enables the socket library by default.
BDU:2024-04366
Уязвимость компонента Socket Library систем компьютерной верстки LuaTeX, TeX Live и MiKTeX, позволяющая нарушителю выполнить произвольные команды
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-32668 LuaTeX before 1.17.0 allows a document (compiled with the default settings) to make arbitrary network requests. This occurs because full access to the socket library is permitted by default, as stated in the documentation. This also affects TeX Live before 2023 r66984 and MiKTeX before 23.5. | CVSS3: 5.5 | 0% Низкий | больше 2 лет назад | |
CVE-2023-32668 LuaTeX before 1.17.0 allows a document (compiled with the default settings) to make arbitrary network requests. This occurs because full access to the socket library is permitted by default, as stated in the documentation. This also affects TeX Live before 2023 r66984 and MiKTeX before 23.5. | CVSS3: 5.5 | 0% Низкий | больше 2 лет назад | |
CVE-2023-32668 LuaTeX before 1.17.0 allows a document (compiled with the default sett ... | CVSS3: 5.5 | 0% Низкий | больше 2 лет назад | |
GHSA-hm67-jh95-48xh LuaTeX before 1.17.0 enables the socket library by default. | CVSS3: 9.8 | 0% Низкий | больше 2 лет назад | |
BDU:2024-04366 Уязвимость компонента Socket Library систем компьютерной верстки LuaTeX, TeX Live и MiKTeX, позволяющая нарушителю выполнить произвольные команды | CVSS3: 9.8 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу