← back
CVE-2008-3533

CVE-2008-3533

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 19%
from disclosure to weapon0 days
Published on NVDAug 18
1st PoCAug 13
exploitation probability
19%top 3% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Format string vulnerability in the window_error function in yelp-window.c in yelp in Gnome after 2.19.90 and before 2.24 allows remote attackers to execute arbitrary code via format string specifiers in an invalid URI on the command line, as demonstrated by use of yelp within (1) man or (2) ghelp URI handlers in Firefox, Evolution, and unspecified other programs.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.