Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-13445

Опубликовано: 30 дек. 2019
Источник: debian

Описание

An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3. parseOptions() in tools/rosbag/src/record.cpp has an integer overflow when a crafted split option can be entered on the command line.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ros-ros-commfixed1.14.3+ds1-11package
ros-ros-commfixed1.14.3+ds1-5+deb10u1busterpackage
ros-ros-commfixed1.12.6-2+deb9u2stretchpackage

Примечания

  • https://github.com/ros/ros_comm/issues/1738

  • https://github.com/ros/ros_comm/pull/1741

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 6 лет назад

An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3. parseOptions() in tools/rosbag/src/record.cpp has an integer overflow when a crafted split option can be entered on the command line.

CVSS3: 9.8
nvd
около 6 лет назад

An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3. parseOptions() in tools/rosbag/src/record.cpp has an integer overflow when a crafted split option can be entered on the command line.

github
больше 3 лет назад

An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3. parseOptions() in tools/rosbag/src/record.cpp has an integer overflow when a crafted split option can be entered on the command line.