{"id":"CVE-2023-1010","summary":"vox2png vox2png.c heap-based overflow","details":"A vulnerability classified as critical was found in vox2png 1.0. Affected by this vulnerability is an unknown functionality of the file vox2png.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-221743.","modified":"2026-08-12T03:51:31.034894225Z","published":"2023-02-24T10:34:20.736Z","database_specific":{"cwe_ids":["CWE-122"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/1xxx/CVE-2023-1010.json","unresolved_ranges":[{"extracted_events":[{"introduced":"1.0"},{"last_affected":"1.0"}],"source":"AFFECTED_FIELD"}],"cna_assigner":"VulDB"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/1xxx/CVE-2023-1010.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-1010"},{"type":"ADVISORY","url":"https://vuldb.com/?id.221743"},{"type":"REPORT","url":"https://vuldb.com/?ctiid.221743"},{"type":"EVIDENCE","url":"https://github.com/10cksYiqiyinHangzhouTechnology/vox2png/blob/main/README.md"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/jemisa/vox2png","events":[{"introduced":"4f991abc316e27273a95e13fce4ca5c1b6a00930"},{"last_affected":"4f991abc316e27273a95e13fce4ca5c1b6a00930"}],"database_specific":{"cpe":"cpe:2.3:a:vox2png_project:vox2png:1.0:*:*:*:*:*:*:*","extracted_events":[{"introduced":"1.0"},{"last_affected":"1.0"}],"source":"CPE_STRING"}}],"versions":["1.0","v1.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1010.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"}]}