3.3
CVE-2024-0257
- EPSS 0.2%
- Veröffentlicht 17.04.2024 20:15:07
- Zuletzt bearbeitet 15.04.2026 00:35:42
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
RoboDK Heap-based Buffer Overflow
RoboDK v5.5.4 is vulnerable to heap-based buffer overflow while processing a specific project file. The resulting memory corruption may crash the application.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerRoboDK
≫
Produkt
RoboDK
Default Statusunaffected
Version
v5.5.4
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.2% | 0.1 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| ics-cert@hq.dhs.gov | 3.3 | 1.8 | 1.4 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
|
CWE-122 Heap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
https://www.cisa.gov/news-events/ics-advisories/icsa-24-107-04