praydog UEVR Out-of-Bounds Read Vulnerability
Vulnerability
An out-of-bounds read vulnerability has been identified in praydog UEVR versions prior to 1.05, specifically within the Lua dependency's lparser.C file. This vulnerability arises from a security issue in the singlevar() function, which was inherited from Lua but lacked a crucial security patch. The original vulnerability was addressed in Lua, and this issue in UEVR mirrors that unpatched problem.
Impact
Exploitation of this vulnerability leads to an out-of-bounds read, which can potentially be used to read memory beyond the intended buffer limits, causing undefined behavior or information leakage.
Remediation
Users can update to praydog UEVR version 1.05 or later to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
