Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Heaven2024

#19357of 56,330
15Total CVSS
Vulnerabilities · 2
High
2
PT-2024-27754
7.5
2024-06-17
Unknown · Cvc5 Solver · CVE-2024-37794
**Name of the Vulnerable Software and Affected Versions** CVC5 Solver version 1.1.3 **Description** The issue is related to improper input validation, which allows attackers to cause a Denial of Service (DoS) by providing a crafted SMT2 input file. **Recommendations** For version 1.1.3, update to a newer version that addresses the improper input validation issue to prevent Denial of Service attacks.
PT-2024-27755
7.5
2024-06-17
Unknown · Cvc5 Solver · CVE-2024-37795
**Name of the Vulnerable Software and Affected Versions** CVC5 Solver version 1.1.3 **Description** A segmentation fault in the software allows attackers to cause a Denial of Service (DoS) via a crafted SMT-LIB input file containing the `set-logic` command with specific formatting errors. **Recommendations** For version 1.1.3, consider avoiding the use of the `set-logic` command with potentially malformed input until a fix is available. As a temporary workaround, restrict the input to validated SMT-LIB files to minimize the risk of exploitation.