Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
chmlib before 0.39 allows user-assisted remote attackers to execute arbitrary code via a crafted page block length in a CHM file, which triggers memory corruption.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CHMlib页面块处理长度缓冲区溢出漏洞
Vulnerability Description
CHMlib是用于读取Microsoft CHM文件的开源库。 CHMlib在处理对象的参数时存在漏洞,远程攻击者可能利用此漏洞通过诱骗用户打开恶意文件控制用户机器。CHM文件在页面中存储各种表格和对象。在解析对象页面时,CHMlib将未经过滤的值从文件传送给了alloca()函数,这可能允许攻击者将栈指针指向内存中的任意位置,然后向内存中写入任意数据,导致以浏览文件用户的权限执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A