Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-14047

Опубликовано: 13 июл. 2018
Источник: debian
EPSS Низкий

Описание

An issue has been found in PNGwriter 0.7.0. It is a SEGV in pngwriter::readfromfile in pngwriter.cc. NOTE: there is a "Warning: PNGwriter was never designed for reading untrusted files with it. Do NOT use this in sensitive environments, especially DO NOT read PNGs from unknown sources with it!" statement in the master/README.md file

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pngwriterremovedpackage

Примечания

  • https://github.com/pngwriter/pngwriter/issues/129

EPSS

Процентиль: 38%
0.00165
Низкий

Связанные уязвимости

CVSS3: 5.5
nvd
больше 7 лет назад

An issue has been found in PNGwriter 0.7.0. It is a SEGV in pngwriter::readfromfile in pngwriter.cc. NOTE: there is a "Warning: PNGwriter was never designed for reading untrusted files with it. Do NOT use this in sensitive environments, especially DO NOT read PNGs from unknown sources with it!" statement in the master/README.md file

CVSS3: 5.5
github
больше 3 лет назад

** DISPUTED ** An issue has been found in PNGwriter 0.7.0. It is a SEGV in pngwriter::readfromfile in pngwriter.cc. NOTE: there is a "Warning: PNGwriter was never designed for reading untrusted files with it. Do NOT use this in sensitive environments, especially DO NOT read PNGs from unknown sources with it!" statement in the master/README.md file.

EPSS

Процентиль: 38%
0.00165
Низкий