GHSA-764q-295c-4pqcHighCVSS 8.4

Arm Whois 3.11 contains a buffer overflow vulnerability that allows local attackers to execute...

Published
June 2, 2026
Last Modified
June 2, 2026

🔗 CVE IDs covered (1)

📋 Description

Arm Whois 3.11 contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by overwriting the structured exception handler. Attackers can craft a malicious input file with a 672-byte offset to overwrite the nSEH and SEH pointers, enabling code execution through exception handler hijacking.

🔗 References (6)