Vulnerability Details CVE-2012-2676
Multiple integer overflows in the (1) malloc and (2) calloc functions in Hoard before 3.9 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows on implementing code via a large size value, which causes less memory to be allocated than expected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.9%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2012-2676
-
cpe:2.3:a:emery_berger:hoard:2.0.6
-
cpe:2.3:a:emery_berger:hoard:2.1.0
-
cpe:2.3:a:emery_berger:hoard:2.1.2
-
cpe:2.3:a:emery_berger:hoard:3.3.0
-
cpe:2.3:a:emery_berger:hoard:3.4.0
-
cpe:2.3:a:emery_berger:hoard:3.5.1
-
cpe:2.3:a:emery_berger:hoard:3.6.1
-
cpe:2.3:a:emery_berger:hoard:3.6.2
-
cpe:2.3:a:emery_berger:hoard:3.7
-
cpe:2.3:a:emery_berger:hoard:3.7.1
-
cpe:2.3:a:emery_berger:hoard:3.8