CVE-2024-25003
09.02.2024, 07:16
KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the hostname, occurs due to insufficient bounds checking and input sanitization. This allows an attacker to overwrite adjacent memory, which leads to arbitrary code execution.Enginsight
Vendor | Product | Version |
---|---|---|
9bis | kitty | 𝑥 ≤ 0.76.1.13 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References