Lucene search

K
cveMitreCVE-2022-38932
HistorySep 27, 2022 - 11:15 p.m.

CVE-2022-38932

2022-09-2723:15:15
CWE-787
mitre
web.nvd.nist.gov
27
4
cve-2022-38932
toaruos
readelf
global overflow
rce
elf file
nvd

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

37.0%

readelf in ToaruOS 2.0.1 has a global overflow allowing RCE when parsing a crafted ELF file.

Affected configurations

Nvd
Node
toaruostoaruosMatch2.0.1
VendorProductVersionCPE
toaruostoaruos2.0.1cpe:2.3:o:toaruos:toaruos:2.0.1:*:*:*:*:*:*:*

Social References

More

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

37.0%

Related for CVE-2022-38932