NASA Kodiak version v1.0 contains a CWE-502 vulnerability in Kodiak library's data processing function that can result in remote code execution. This attack appear to be exploitable via Victim opens an untrusted file for optimization using Kodiak library.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/nasa/Kodiak/issues/5 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-02-09T23:00:00
Updated: 2024-08-05T12:33:49.040Z
Reserved: 2018-02-05T00:00:00
Link: CVE-2018-1000047
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-02-09T23:29:01.573
Modified: 2024-11-21T03:39:31.190
Link: CVE-2018-1000047
Redhat
No data.