Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-9472

Опубликовано: 07 июн. 2017
Источник: debian

Описание

In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libytneffixed1.9.3-1package
libytnefno-dsastretchpackage
libytnefno-dsajessiepackage
libytnefno-dsawheezypackage

Примечания

  • https://github.com/Yeraze/ytnef/issues/41

  • https://blogs.gentoo.org/ago/2017/05/24/ytnef-heap-based-buffer-overflow-in-swapdword-ytnef-c/

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 8 лет назад

In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.

CVSS3: 5.5
nvd
больше 8 лет назад

In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.

CVSS3: 5.5
github
больше 3 лет назад

In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.