Heap-based Buffer Over-read in jhead Affects GPS Information Processing
CVE-2020-6625

7.1HIGH

Key Information:

Status
Vendor
CVE Published:
9 January 2020

What is CVE-2020-6625?

A heap-based buffer over-read vulnerability exists in jhead up to version 3.04 when processing GPS information. This issue arises from the improper handling of memory in the Get32s function, which can potentially expose sensitive data beyond the intended buffer limits. Exploiting this vulnerability could allow an attacker to read memory locations that may contain private information, emphasizing the need for secure coding practices in handling GPS metadata.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.