Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-12482

Опубликовано: 04 авг. 2017
Источник: debian
EPSS Низкий

Описание

The ledger::parse_date_mask_routine function in times.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ledgerfixed3.1.2+dfsg1-1package
ledgerno-dsastretchpackage
ledgerno-dsajessiepackage
ledgerno-dsawheezypackage

Примечания

  • http://bugs.ledger-cli.org/show_bug.cgi?id=1224

  • https://github.com/ledger/ledger/issues/1224

  • https://github.com/ledger/ledger/commit/7c0ae5b02571e21f97d45f5d091cb78af9885713

EPSS

Процентиль: 67%
0.01237
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 9 лет назад

The ledger::parse_date_mask_routine function in times.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

CVSS3: 7.8
nvd
около 9 лет назад

The ledger::parse_date_mask_routine function in times.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

CVSS3: 7.8
github
больше 4 лет назад

The ledger::parse_date_mask_routine function in times.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

suse-cvrf
около 7 лет назад

Security update for ledger

EPSS

Процентиль: 67%
0.01237
Низкий