CVE-2023-36377: Osslsigncode Project Osslsigncode
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Buffer Overflow vulnerability in mtrojnar osslsigncode v.2.3 and before allows a local attacker to execute arbitrary code via a crafted .exe, .sys, and .dll files.
Affected products
- Osslsigncode Project Osslsigncode: version 2.3 only
Published 2023-07-03. Last modified 2026-06-17.