CVE-2008-2080

Stack-based buffer overflow in the Read32s_64 function in src/lib/cdfread64.c in the NASA Goddard Space Flight Center Common Data Format (CDF) library before 3.2.1 allows context-dependent attackers to execute arbitrary code via a .cdf file with crafted length tags.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 83%
VendorProductVersion
nasa_goddard_space_flight_centercommon_data_format
𝑥
≤ 3.2
nasa_goddard_space_flight_centercommon_data_format
2.0
nasa_goddard_space_flight_centercommon_data_format
2.1
nasa_goddard_space_flight_centercommon_data_format
2.2
nasa_goddard_space_flight_centercommon_data_format
2.3
nasa_goddard_space_flight_centercommon_data_format
2.4
nasa_goddard_space_flight_centercommon_data_format
2.5
nasa_goddard_space_flight_centercommon_data_format
2.6
nasa_goddard_space_flight_centercommon_data_format
2.7
nasa_goddard_space_flight_centercommon_data_format
3.0
nasa_goddard_space_flight_centercommon_data_format
3.1
𝑥
= Vulnerable software versions