Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-20450

Опубликовано: 25 дек. 2018
Источник: debian
EPSS Низкий

Описание

The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
r-cran-readxlfixed1.2.0.9000-1package
r-cran-readxlfixed0.1.1-1+deb9u2stretchpackage

Примечания

  • https://github.com/evanmiller/libxls/issues/34

EPSS

Процентиль: 49%
0.00257
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 7 лет назад

The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.

CVSS3: 6.5
nvd
около 7 лет назад

The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.

CVSS3: 6.5
github
больше 3 лет назад

The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.

EPSS

Процентиль: 49%
0.00257
Низкий