PT-2022-9015 · Unknown+2 · Multimon-Ng+2
Rfarley3
·
Published
2022-12-19
·
Updated
2024-10-09
·
CVE-2020-36619
CVSS v3.1
5.5
Medium
| Vector | AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
multimon-ng versions prior to 1.2.0
Description
A critical issue affects the function
add ch of the file demod flex.c. The manipulation of the argument ch leads to a format string issue.Recommendations
For versions prior to 1.2.0, upgrade to version 1.2.0 to address this issue. As a temporary workaround, consider restricting the manipulation of the
ch argument in the add ch function until the upgrade is applied.Fix
Use of Externally-Controlled Format String
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Debian
Multimon-Ng