Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-8146

Опубликовано: 25 мая 2015
Источник: debian
EPSS Средний

Описание

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 does not properly track directionally isolated pieces of text, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via crafted text.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
icufixed52.1-9package
icunot-affectedwheezypackage
icunot-affectedsqueezepackage
chromium-browserfixed42.0.2311.135-1package
chromium-browserfixed42.0.2311.135-1~deb8u1jessiepackage
chromium-browsernot-affectedwheezypackage
chromium-browserend-of-lifesqueezepackage

Примечания

  • Patch: http://bugs.icu-project.org/trac/changeset/37162

EPSS

Процентиль: 96%
0.25808
Средний

Связанные уязвимости

ubuntu
больше 10 лет назад

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 does not properly track directionally isolated pieces of text, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via crafted text.

redhat
почти 11 лет назад

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 does not properly track directionally isolated pieces of text, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via crafted text.

nvd
больше 10 лет назад

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 does not properly track directionally isolated pieces of text, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via crafted text.

github
больше 3 лет назад

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 does not properly track directionally isolated pieces of text, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via crafted text.

fstec
больше 10 лет назад

Уязвимость библиотеки International Components for Unicode, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

EPSS

Процентиль: 96%
0.25808
Средний