vendor:
libgtop2
by:
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: libgtop2
Affected Version From: Prior to libgtop2 2.14.6
Affected Version To:
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested:
Buffer Overflow in libgtop2 Library
The 'libgtop2' library is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying into an insufficiently sized memory buffer. An attacker may exploit this issue by enticing victims into viewing a maliciously crafted system process with an application that uses the affected library. Successful exploits may cause arbitrary code to run with the privileges of the victim. Failed exploit attempts will likely cause denial-of-service conditions.
Mitigation:
Upgrade to libgtop2 version 2.14.6 or later.