5.5

CVE-2022-25051

An Off-by-one Error occurs in cmr113_decode of rtl_433 21.12 when decoding a crafted file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Rtl 433 ProjectRtl 433 Version21.12
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.74% 0.497
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-193 Off-by-one Error

A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.

https://github.com/merbanan/rtl_433/commit/2dad7b9fc67a1d0bfbe520fbd821678b8f8cc7a8
Patch
Third Party Advisory
https://github.com/merbanan/rtl_433/issues/1960
Third Party Advisory
Issue Tracking
https://huntr.dev/bounties/78eee103-bd61-4b4f-b054-04ad996b39e7/
Third Party Advisory
Permissions Required