alsa-lib 1.2.16.1 及之前版本中存在一个栈缓冲区溢出漏洞,位于 函数中。该函数在解析包含 64 个或更多字符的 字段时,会向一个 64 字节缓冲区之外多写入一个字节。攻击者可以通过保存的状态文件或命令行参数提供一个较长的控制元素标识符字符串,从而覆盖相邻的栈内存,导致调用进程崩溃。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ALSA Project | alsa-lib | 0 ~ 1.2.16.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet