CVE-2020-15100Low· 2.8▾ Sunlitfreewvs vulnerable to denial of service through large files
▾ Sunlit zone — Low / medium · no exploitation signal
impact 15.4 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 8.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
0.3%
0.3% → 0.3%
A user could create a large file that freewvs will try to read, which will terminate a scan process.
This has been patched by limiting the data freewvs reads: https://github.com/schokokeksorg/freewvs/commit/18bbf2043e53f69e0119d24f8ae4edb274afb9b2
freewvs < 0.1.1Upgrade to a patched release:
freewvs 0.1.1Connected by shared product, vendor, weakness, or advisory.