Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23948
HistoryApr 10, 2020 - 12:41 a.m.

Arbitrary Code Execution

2020-04-1000:41:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

EPSS

0

Percentile

10.1%

newt is vulnerable to arbitrary code execution. The vulnerability exists as a heap-based buffer overflow flaw was found in the way newt processes content that is to be displayed in a text dialog box. A local attacker could issue a specially-crafted text dialog box display request (direct or via a custom application), leading to a denial of service (application crash) or, potentially, arbitrary code execution with the privileges of the user running the application using the newt library.

References