Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9911

Опубликовано: 04 янв. 2017
Источник: debian
EPSS Низкий

Описание

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
icufixed55.1-3package

Примечания

  • http://bugs.icu-project.org/trac/ticket/10891

  • Fixed by: http://bugs.icu-project.org/trac/changeset/35699

  • The patch addressing CVE-2014-9911 is applied in 54.1 , but the

  • first fixed package version uploaded to unstable is 55.1-3 .

EPSS

Процентиль: 82%
0.01804
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

CVSS3: 8.4
redhat
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

CVSS3: 9.8
nvd
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

suse-cvrf
около 9 лет назад

Security update for icu

suse-cvrf
около 8 лет назад

Recommended update for icu

EPSS

Процентиль: 82%
0.01804
Низкий