Stack-based Buffer Overflow in Fribidi Package
CVE-2022-25308
7.8HIGH
Summary
A stack-based buffer overflow vulnerability exists in the Fribidi package, allowing attackers to craft a malicious file that, when processed by Fribidi, can result in potential memory leaks or cause denial of service. This flaw emphasizes the critical need for secure coding practices and regular updates to prevent exploitation.
Affected Version(s)
fribidi Fixed in v1.0.12
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved