Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-12932

Опубликовано: 28 июн. 2018
Источник: debian
EPSS Низкий

Описание

PlayEnhMetaFileRecord in enhmetafile.c in Wine 3.7 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by triggering a large pAlphaBlend->cbBitsSrc value.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
winefixed4.0~rc1-1package
wineignoredstretchpackage
winepostponedjessiepackage
wine-developmentfixed3.8-1package
wine-developmentignoredstretchpackage
wine-developmentno-dsajessiepackage

Примечания

  • https://bugs.winehq.org/show_bug.cgi?id=45105

  • https://bugs.winehq.org/attachment.cgi?id=61284

  • https://source.winehq.org/git/wine.git/commit/8d2676fd14f130f9e8f06744743423168bf8d18d

  • https://source.winehq.org/git/wine.git/commit/b6da3547d8990c3c3affc3a5865aefd2a0946949

EPSS

Процентиль: 63%
0.00449
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

PlayEnhMetaFileRecord in enhmetafile.c in Wine 3.7 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by triggering a large pAlphaBlend->cbBitsSrc value.

CVSS3: 9.8
nvd
больше 7 лет назад

PlayEnhMetaFileRecord in enhmetafile.c in Wine 3.7 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by triggering a large pAlphaBlend->cbBitsSrc value.

CVSS3: 9.8
github
больше 3 лет назад

PlayEnhMetaFileRecord in enhmetafile.c in Wine 3.7 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by triggering a large pAlphaBlend->cbBitsSrc value.

EPSS

Процентиль: 63%
0.00449
Низкий