1 results (0.005 seconds)
CVSS: 7.0EPSS: 0%CPEs: 1EXPL: 0
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2024-40897 – orc: Stack-based buffer overflow vulnerability in ORC
https://notcve.org/view.php?id=CVE-2024-40897
26 Jul 2024 — Stack-based buffer overflow vulnerability exists in orcparse.c of ORC versions prior to 0.4.39. If a developer is tricked to process a specially crafted file with the affected ORC compiler, an arbitrary code may be executed on the developer's build environment. This may lead to compromise of developer machines or CI build environments. An update for orc is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.4 Telecommunications Update Service, ... • https://github.com/GStreamer/orc • CWE-121: Stack-based Buffer Overflow •