Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a heap-based overflow vulnerability, where certain input can corrupt the heap and crash the forked process.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 18 Feb 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: rapid7

Published:

Updated: 2025-02-18T16:56:34.707Z

Reserved: 2023-03-16T20:44:20.346Z

Link: CVE-2023-28508

cve-icon Vulnrichment

Updated: 2024-08-02T13:43:22.463Z

cve-icon NVD

Status : Modified

Published: 2023-03-29T21:15:08.353

Modified: 2025-02-18T17:15:17.723

Link: CVE-2023-28508

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.