296,202
Total vulnerabilities in the database
In the ffgphd and ffgtkn functions in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buffer overflow overwriting arbitrary data. An attacker can deliver an FIT image to trigger this vulnerability and potentially gain code execution.
Software | From | Fixed in |
---|---|---|
nasa / cfitsio | 3.42 | 3.42.x |
fedoraproject / fedora | 28 | 28.x |