7.5
CVE-2021-32422
- EPSS 0.18%
- Veröffentlicht 22.08.2023 19:16:20
- Zuletzt bearbeitet 21.11.2024 06:07:02
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
dpic 2021.01.01 has a Global buffer overflow in theyylex() function in main.c and reads out of the bound array.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dpic Project ≫ Dpic Version2021-01-01
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.18% | 0.394 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.