PT-2021-10253 · Libexe · Libexe

Wcventure

·

Published

2021-08-19

·

Updated

2024-08-04

·

CVE-2020-18900

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions: libexe versions prior to 20181128
Description: A heap-based buffer overflow in the libexe io handle read coff optional header function allows attackers to execute arbitrary code.
Recommendations: For versions prior to 20181128, update to a version 20181128 or later to resolve the issue. As a temporary workaround, consider restricting the use of the libexe io handle read coff optional header function until a patch is available.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2020-18900

Affected Products

Libexe