Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-4883
HistoryFeb 07, 2023 - 7:15 p.m.

Design/Logic Flaw

2023-02-0719:15:00
PRIOn knowledge base
www.prio-n.com
8
libxpm
file processing
arbitrary code execution

8.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

47.2%

A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.

CPENameOperatorVersion
libxpmlt3.5.15