Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-19208

Опубликовано: 12 нояб. 2018
Источник: debian

Описание

In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will lead to a denial of service attack. This is related to WPXTable.h.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libwpdfixed0.10.2-3package
libwpdno-dsastretchpackage
libwpdignoredjessiepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1643752

  • Patch used in Fedora: https://src.fedoraproject.org/rpms/libwpd/raw/e42834b844f3282d8ccb0889abf1b33f3f71e02f/f/0001-Resolves-rhbz-1643752-bounds-check-m_currentTable-ac.patch

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 7 лет назад

In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will lead to a denial of service attack. This is related to WPXTable.h.

CVSS3: 3.3
redhat
больше 7 лет назад

In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will lead to a denial of service attack. This is related to WPXTable.h.

CVSS3: 6.5
nvd
около 7 лет назад

In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will lead to a denial of service attack. This is related to WPXTable.h.

suse-cvrf
около 7 лет назад

Security update for libwpd

suse-cvrf
около 7 лет назад

Security update for libwpd