PT-2023-5284 · Libeconf+1 · Libeconf+1

Published

2023-03-16

·

Updated

2024-07-12

·

CVE-2023-30078

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions libeconf (affected versions not specified)
Description The issue is related to the econf writeFile() function in the libeconf library, which is used for configuration file analysis and management. It involves a buffer overflow in memory, allowing a remote attacker to potentially cause a denial of service or execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2023-05908
CVE-2023-30078
OPENSUSE-SU-2023_3954-1
OPENSUSE-SU-2024:13221-1
SUSE-SU-2023:3639-1
SUSE-SU-2023:3954-1
SUSE-SU-2023:3954-2
SUSE-SU-2024:2426-1

Affected Products

Suse
Libeconf