Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple out-of-bounds write vulnerabilities exist in the LXT2 parsing functionality of GTKWave 3.3.115. A specially-crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the out-of-bounds write perfomed by the prefix copy loop.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
内存缓冲区边界内操作的限制不恰当
Vulnerability Title
GTKWave 缓冲区错误漏洞
Vulnerability Description
GTKWave是GTKWave公司的一款功能齐全、基于 GTK+ 的波形查看器。 GTKWave 3.3.115版本存在缓冲区错误漏洞,该漏洞源于LXT2 解析功能中存在多个越界写入,攻击者利用该漏洞可以使用特制的 .lxt2 文件执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A