CVE-2023-33457: High severity Sogou C\+\+ Workflow vulnerability
Published Jun 6, 2023
·Updated
In Sogou Workflow v0.10.6, memcpy a negtive size in URIParser::parse , may cause buffer-overflow and crash.
Affected Software
1 affected component
Sogou C\+\+ Workflow=0.10.6
Remediation
Patch Available
Event History
Jun 6, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-33457?
The severity of CVE-2023-33457 is high, as it can lead to buffer overflow and application crashes.
2
How do I fix CVE-2023-33457?
To fix CVE-2023-33457, you should upgrade Sogou Workflow to the latest version that addresses the vulnerability.
3
What causes the vulnerability in CVE-2023-33457?
CVE-2023-33457 is caused by a negative size argument being passed to memcpy in the URIParser::parse function.
4
Which version of Sogou Workflow is affected by CVE-2023-33457?
Sogou Workflow version 0.10.6 is affected by CVE-2023-33457.
5
What kind of exploit is possible with CVE-2023-33457?
CVE-2023-33457 can be exploited to cause a buffer overflow, which may lead to application crashes and potential code execution.