Description
NASA Singledop version v1.0 contains a CWE-502 vulnerability in NASA Singledop library (Weather data) that can result in remote code execution. This attack appear to be exploitable via Victim opening a specially crafted radar data file. This vulnerability appears to have been fixed in v1.1.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-1806 | NASA Singledop version v1.0 contains a CWE-502 vulnerability in NASA Singledop library (Weather data) that can result in remote code execution. This attack appear to be exploitable via Victim opening a specially crafted radar data file. This vulnerability appears to have been fixed in v1.1. |
References
| Link | Providers |
|---|---|
| https://github.com/nasa/SingleDop/pull/19 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T12:33:48.724Z
Reserved: 2018-02-05T00:00:00.000Z
Link: CVE-2018-1000045
No data.
Status : Modified
Published: 2018-02-09T23:29:01.463
Modified: 2024-11-21T03:39:30.880
Link: CVE-2018-1000045
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD