Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-6439

Опубликовано: 15 мар. 2017
Источник: debian
EPSS Низкий

Описание

Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) via a crafted plist file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libplistfixed1.12+git+1+e37ca00-0.1package

Примечания

  • https://github.com/libimobiledevice/libplist/issues/95

  • https://github.com/libimobiledevice/libplist/commit/32ee5213fe64f1e10ec76c1ee861ee6f233120dd

EPSS

Процентиль: 32%
0.00121
Низкий

Связанные уязвимости

CVSS3: 5
ubuntu
почти 9 лет назад

Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) via a crafted plist file.

CVSS3: 3.3
redhat
почти 9 лет назад

Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) via a crafted plist file.

CVSS3: 5
nvd
почти 9 лет назад

Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) via a crafted plist file.

CVSS3: 5
github
больше 3 лет назад

Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) via a crafted plist file.

suse-cvrf
больше 8 лет назад

Security update for libplist

EPSS

Процентиль: 32%
0.00121
Низкий