Vulnerabilities
2 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2022-48468 | protobuf-c before 1.4.1 has an unsigned integer overflow in parse_required_member. protobuf-c before 1.4.1 has an unsigned integer overflow in parse_required_member. NVD description · AI analysis pending | 5.5 | <1% |
| — | ||
| CVE-2022-33070 | Protobuf-c v1.4.0 was discovered to contain an invalid arithmetic shift via the function parse_tag_and_wiretype in protobuf-c/protobuf-c.c. Protobuf-c v1.4.0 was discovered to contain an invalid arithmetic shift via the function parse_tag_and_wiretype in protobuf-c/protobuf-c.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via unspecified vectors. NVD description · AI analysis pending | 5.5 | 1% | PoC ×2 |
| — |