Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-15422

Опубликовано: 28 авг. 2018
Источник: debian
EPSS Низкий

Описание

Integer overflow in international date handling in International Components for Unicode (ICU) for C/C++ before 60.1, as used in V8 in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
icufixed57.1-9package
icunot-affectedwheezypackage

Примечания

  • https://code.google.com/p/chromium/issues/detail?id=774382

  • https://bugzilla.redhat.com/show_bug.cgi?id=1523136

  • Issue fixed in: https://ssl.icu-project.org/trac/changeset/40654

EPSS

Процентиль: 88%
0.03854
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

Integer overflow in international date handling in International Components for Unicode (ICU) for C/C++ before 60.1, as used in V8 in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 6.5
redhat
около 8 лет назад

Integer overflow in international date handling in International Components for Unicode (ICU) for C/C++ before 60.1, as used in V8 in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 6.5
nvd
больше 7 лет назад

Integer overflow in international date handling in International Components for Unicode (ICU) for C/C++ before 60.1, as used in V8 in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 6.5
github
больше 3 лет назад

Integer overflow in international date handling in International Components for Unicode (ICU) for C/C++ before 60.1, as used in V8 in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 6.5
fstec
около 8 лет назад

Уязвимость библиотеки International Components for Unicode, связанная с целочисленным переполнением, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

EPSS

Процентиль: 88%
0.03854
Низкий