7.5
CVSSv2

CVE-2008-2080

Published: 06/05/2008 Updated: 08/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in the Read32s_64 function in src/lib/cdfread64.c in the NASA Goddard Space Flight Center Common Data Format (CDF) library prior to 3.2.1 allows context-dependent malicious users to execute arbitrary code via a .cdf file with crafted length tags.

Vulnerable Product Search on Vulmon Subscribe to Product

nasa goddard space flight center common data format 2.2

nasa goddard space flight center common data format 2.3

nasa goddard space flight center common data format 2.0

nasa goddard space flight center common data format 2.1

nasa goddard space flight center common data format 3.0

nasa goddard space flight center common data format 3.1

nasa goddard space flight center common data format 2.4

nasa goddard space flight center common data format 2.5

nasa goddard space flight center common data format 2.6

nasa goddard space flight center common data format 2.7

nasa goddard space flight center common data format

Exploits

Core Security Technologies Advisory - NASA's Common Data Format library suffers from a buffer overflow vulnerability CDF versions 32 and earlier are vulnerable ...