Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-15601

Опубликовано: 18 окт. 2017
Источник: debian

Описание

In GNU Libextractor 1.4, there is a heap-based buffer overflow in the EXTRACTOR_png_extract_method function in plugins/png_extractor.c, related to processiTXt and stndup.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libextractorfixed1:1.6-1package
libextractorfixed1:1.3-4+deb9u1stretchpackage
libextractorfixed1:1.3-2+deb8u1jessiepackage

Примечания

  • http://lists.gnu.org/archive/html/bug-libextractor/2017-10/msg00006.html

  • Fixed by https://git.gnunet.org/libextractor.git/commit/?id=f813535dad4ad860b989952a46266a1469801091

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

In GNU Libextractor 1.4, there is a heap-based buffer overflow in the EXTRACTOR_png_extract_method function in plugins/png_extractor.c, related to processiTXt and stndup.

CVSS3: 7.5
nvd
больше 8 лет назад

In GNU Libextractor 1.4, there is a heap-based buffer overflow in the EXTRACTOR_png_extract_method function in plugins/png_extractor.c, related to processiTXt and stndup.

CVSS3: 7.5
github
больше 3 лет назад

In GNU Libextractor 1.4, there is a heap-based buffer overflow in the EXTRACTOR_png_extract_method function in plugins/png_extractor.c, related to processiTXt and stndup.