ZeroHour

Vulnerabilities

2 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2022-48468
protobuf-c before 1.4.1 has an unsigned integer overflow in parse_required_member.

protobuf-c before 1.4.1 has an unsigned integer overflow in parse_required_member.

NVD description · AI analysis pending
5.5<1%
  • protobuf-c project protobuf-c
CVE-2022-33070
Protobuf-c v1.4.0 was discovered to contain an invalid arithmetic shift via the function parse_tag_and_wiretype in protobuf-c/protobuf-c.c.

Protobuf-c v1.4.0 was discovered to contain an invalid arithmetic shift via the function parse_tag_and_wiretype in protobuf-c/protobuf-c.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via unspecified vectors.

NVD description · AI analysis pending
5.51% PoC ×2
  • protobuf-c project protobuf-c
  • protobuf-c project fedora