VYPR
Vendor

RenderDoc

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2023-33864CriJun 7, 2023
    risk 0.64cvss 9.8epss 0.04

    StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It uses uint32_t(m_BufferSize-m_InputSize) even though m_InputSize can exceed m_BufferSize.

  • CVE-2023-33863CriJun 7, 2023
    risk 0.64cvss 9.8epss 0.04

    SerialiseValue in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. 0xffffffff is sign-extended to 0xffffffffffffffff (SIZE_MAX) and then there is an attempt to add 1.

  • CVE-2023-33865HigJun 7, 2023
    risk 0.51cvss 7.8epss 0.01

    RenderDoc before 1.27 allows local privilege escalation via a symlink attack. It relies on the /tmp/RenderDoc directory regardless of ownership.