Lucene search

K
cvelistMitreCVELIST:CVE-2021-45423
HistoryMar 13, 2023 - 12:00 a.m.

CVE-2021-45423

2023-03-1300:00:00
mitre
www.cve.org
5
buffer overflow
pev 0.81
pe_exports function

AI Score

9.9

Confidence

High

EPSS

0.003

Percentile

68.5%

A Buffer Overflow vulnerabilityexists in Pev 0.81 via the pe_exports function from exports.c… The array offsets_to_Names is dynamically allocated on the stack using exp->NumberOfFunctions as its size. However, the loop uses exp->NumberOfNames to iterate over it and set its components value. Therefore, the loop code assumes that exp->NumberOfFunctions is greater than ordinal at each iteration. This can lead to arbitrary code execution.

AI Score

9.9

Confidence

High

EPSS

0.003

Percentile

68.5%