Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-11724

Опубликовано: 19 июн. 2018
Источник: debian
EPSS Низкий

Описание

The mobi_pk1_decrypt function in encryption.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libmobinot-affectedpackage

Примечания

  • https://seclists.org/fulldisclosure/2018/May/48

  • https://github.com/bfabiszewski/libmobi/commit/b5657d7e2357782147a80a4d63a4b5fb7c05305f (v0.4)

EPSS

Процентиль: 59%
0.00387
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
больше 7 лет назад

The mobi_pk1_decrypt function in encryption.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.

CVSS3: 8.8
github
больше 3 лет назад

The mobi_pk1_decrypt function in encryption.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.

EPSS

Процентиль: 59%
0.00387
Низкий