GHSA-q358-9pw8-828w
GitHub Security Advisory
⚠ Unreviewed
HIGH
Has CVE
Advisory Details
The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, which allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: November 24, 2025 6:29 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.