OSV 1.4.0 · unreviewed · 修改于 2022-04-20 08:01
发布时间
2022-02-10 08:00
GitHub 审查时间
—
NVD 发布时间
2022-02-05 07:15
源文件
advisories/unreviewed/2022/02/GHSA-hmq5-vc89-4m9m/GHSA-hmq5-vc89-4m9m.json
An information disclosure vulnerability exists in the pick-and-place rotation parsing functionality of Gerbv 2.7.0 and dev (commit b5f1eacd), and Gerbv forked 2.8.0. A specially-crafted pick-and-place file can exploit the missing initialization of a structure to leak memory contents. An attacker can provide a malicious file to trigger this vulnerability.
该公告没有提供结构化的受影响软件包信息。