Lucene search

K
vulnrichmentMitreVULNRICHMENT:CVE-2024-25817
HistoryMar 05, 2024 - 12:00 a.m.

CVE-2024-25817

2024-03-0500:00:00
mitre
github.com
2
cve-2024-25817
buffer overflow
eza 0.18.2
local attackers
arbitrary code
.git/head
.git/refs
.git/objects

AI Score

7.6

Confidence

Low

SSVC

Exploitation

poc

Automatable

no

Technical Impact

total

Buffer Overflow vulnerability in eza before version 0.18.2, allows local attackers to execute arbitrary code via the .git/HEAD, .git/refs, and .git/objects components.

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:a:eza:eza:*:*:*:*:*:*:*:*"
    ],
    "vendor": "eza",
    "product": "eza",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "lessThan": "0.18.2",
        "versionType": "custom"
      }
    ],
    "defaultStatus": "unknown"
  }
]

AI Score

7.6

Confidence

Low

SSVC

Exploitation

poc

Automatable

no

Technical Impact

total

Related for VULNRICHMENT:CVE-2024-25817