Lucene search

K
freebsdFreeBSDAE0EE356-6AE1-11EE-BFB6-8C164567CA3C
HistoryOct 09, 2023 - 12:00 a.m.

libcue -- out-of-bounds array access

2023-10-0900:00:00
vuxml.freebsd.org
10
libcue vulnerability
out-of-bounds array
access
unix
systems

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.002

Percentile

53.4%

The libcue team reports:

There is a vulnerability to out-of-bounds array access.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchlibcue< 2.3.0UNKNOWN

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.002

Percentile

53.4%