Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-6437

Опубликовано: 15 мар. 2017
Источник: debian
EPSS Низкий

Описание

The base64encode function in base64.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds read) via a crafted plist file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libplistfixed1.12+git+1+e37ca00-0.2package
libplistno-dsajessiepackage
libplistnot-affectedwheezypackage

Примечания

  • https://github.com/libimobiledevice/libplist/issues/100

  • Fixed by: https://github.com/libimobiledevice/libplist/commit/dccd9290745345896e3a4a73154576a599fd8b7b

EPSS

Процентиль: 32%
0.00123
Низкий

Связанные уязвимости

CVSS3: 5
ubuntu
почти 9 лет назад

The base64encode function in base64.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds read) via a crafted plist file.

CVSS3: 3.3
redhat
почти 9 лет назад

The base64encode function in base64.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds read) via a crafted plist file.

CVSS3: 5
nvd
почти 9 лет назад

The base64encode function in base64.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds read) via a crafted plist file.

CVSS3: 5
github
больше 3 лет назад

The base64encode function in base64.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds read) via a crafted plist file.

suse-cvrf
больше 8 лет назад

Security update for libplist

EPSS

Процентиль: 32%
0.00123
Низкий