Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-9814

Опубликовано: 17 июл. 2017
Источник: debian
EPSS Низкий

Описание

cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) because of mishandling of an unexpected malloc(0) call.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cairofixed1.16.0-1package
cairono-dsastretchpackage
cairono-dsajessiepackage
cairono-dsawheezypackage

Примечания

  • https://bugs.freedesktop.org/show_bug.cgi?id=101547

  • https://gitlab.freedesktop.org/cairo/cairo/issues/264

  • https://gitlab.freedesktop.org/cairo/cairo/-/commit/199823938780c8e50099b627d3e9137acba7a263 (1.15.14)

EPSS

Процентиль: 57%
0.00358
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) because of mishandling of an unexpected malloc(0) call.

CVSS3: 3.3
redhat
больше 8 лет назад

cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) because of mishandling of an unexpected malloc(0) call.

CVSS3: 7.5
nvd
больше 8 лет назад

cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) because of mishandling of an unexpected malloc(0) call.

suse-cvrf
больше 5 лет назад

Security update for cairo

suse-cvrf
больше 7 лет назад

Security update for cairo

EPSS

Процентиль: 57%
0.00358
Низкий