endpointlabs / VulnerableDotNetCore3Project

.Net Core 3.0
0 stars 0 forks source link

CVE-2022-3555 | libx11-data (CWE-401) #59

Open cbilgin23 opened 1 year ago

cbilgin23 commented 1 year ago

Due Date: 2022-10-27

A high severity vulnerability has been discovered in your project.

Project Name: twrap-go

Scanner Name: trivy

Cwe ID: 401

Cwe Name: Improper Release of Memory Before Removing Last Reference (Memory Leak)

Cwe Link: https://cwe.mitre.org/data/definitions/401.html

CVE ID: CVE-2022-3555

Target: nginx:latest (debian 11.5)

Packages:

References:

Tool Description: A vulnerability was found in X.org libX11 and classified as problematic. This issue affects the function _XFreeX11XCBStructure of the file xcb_disp.c. The manipulation of the argument dpy leads to memory leak. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-211055.

Custom Description: test

Kondukto Link: http://79.kondukto.local/projects/634fe837a5be8478724352c4/vulns/appsec?page=1&perPage=15&id=in:6358f3d2b8bfc0fbb2c3b955 Deeplink: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3555