Metrics
Affected Vendors & Products
Tue, 25 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 25 Mar 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in GNOME libgsf up to 1.14.53. It has been declared as critical. This vulnerability affects the function gsf_prop_settings_collect_va. The manipulation of the argument n_alloced_params leads to heap-based buffer overflow. Local access is required to approach this attack. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | GNOME libgsf gsf_prop_settings_collect_va heap-based overflow | |
Weaknesses | CWE-119 CWE-122 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-03-25T00:31:03.859Z
Updated: 2025-03-25T13:59:23.120Z
Reserved: 2025-03-24T12:46:23.964Z
Link: CVE-2025-2722

Updated: 2025-03-25T13:53:56.823Z

Status : Received
Published: 2025-03-25T01:15:11.617
Modified: 2025-03-25T01:15:11.617
Link: CVE-2025-2722

No data.