Impact
The vulnerability is an out‑of‑bounds read triggered during TOC validation in the tdb_open function of TrailDB 0.6. A crafted input can cause the function to read memory beyond the intended buffer, potentially allowing a remote attacker to read sensitive data or corrupt program state. The flaw is categorized as CWE‑119 and CWE‑125.
Affected Systems
The only explicitly affected product is TrailDB version 0.6. No other versions or derivatives are listed as impacted.
Risk and Exploitability
The CVSS score of 5.1 is considered medium severity. EPSS information is not available, and the vulnerability is not listed in the CISA KEV catalog, but the public nature of the exploit and the ability to launch the attack remotely indicate a measurable risk to systems using the vulnerable library.
OpenCVE Enrichment