SecOpsNews / news

RSS items as GitHub Issues for the discerning engineering leader or security professional
MIT License
34 stars 0 forks source link

[FullDisclosure] LPE and RCE in RenderDoc: CVE-2023-33865, CVE-2023-33864, CVE-2023-33863 #15091

Closed github-actions[bot] closed 1 year ago

github-actions[bot] commented 1 year ago

Posted by Qualys Security Advisory via Fulldisclosure on Jun 07

Qualys Security Advisory

LPE and RCE in RenderDoc: CVE-2023-33865, CVE-2023-33864, CVE-2023-33863

========================================================================

Contents

========================================================================

Summary

CVE-2023-33865, a symlink vulnerability in /tmp/RenderDoc

- Analysis

- Exploitation

CVE-2023-33864, an integer underflow to heap-based buffer overflow

- Analysis

- Exploitation...

https://seclists.org/fulldisclosure/2023/Jun/2

github-actions[bot] commented 1 year ago

This issue is stale because it has been open 1 day with no activity. Remove stale label or comment or this will be closed in 1 day.

github-actions[bot] commented 1 year ago

This issue was closed because it has been stale with no activity.