Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple use-after-free vulnerabilities exist in the VCD get_vartoken realloc functionality of GTKWave 3.3.115. A specially crafted .vcd file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the use-after-free when triggered via the vcd2lxt2 conversion utility.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
释放后使用
Vulnerability Title
GTKWave 资源管理错误漏洞
Vulnerability Description
GTKWave是GTKWave公司的一款功能齐全、基于 GTK+ 的波形查看器。 GTKWave 3.3.118 版本存在资源管理错误漏洞,该漏洞源于特制的 fst 文件可能导致任意代码执行。
CVSS Information
N/A
Vulnerability Type
N/A