PoC Index

CVE-2022-25310

MEDIUM 5.5EPSS 0.5%

A segmentation fault (SEGV) flaw was found in the Fribidi package and affects the fribidi_remove_bidi_marks() function of the lib/fribidi.c file. This flaw allows an attacker to pass a specially crafted file to Fribidi, leading to a crash and causing a denial of service.

CVSS v3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS
0.46% chance of exploitation in the next 30 days, 38th percentile
Published
2022-09-06
Updated
2024-08-03

Proof-of-concept exploits (1)

References

Related