9.8
CVSSv3

CVE-2023-36328

Published: 01/09/2023 Updated: 07/03/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows malicious users to execute arbitrary code and cause a denial of service (DoS).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libtom libtommath

fedoraproject fedora 37

fedoraproject fedora 38

fedoraproject fedora 39

Vendor Advisories

Debian Bug report logs - #1051100 libtommath: CVE-2023-36328 Package: src:libtommath; Maintainer for src:libtommath is Debian Rakudo Maintainers <pkg-rakudo-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 2 Sep 2023 18:36:02 UTC Severity: important Tags: security, ups ...
Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows attackers to execute arbitrary code and cause a denial of service (DoS) (CVE-2023-36328) ...