Описание
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| jhead | fixed | 1:3.06.0.1-2 | package |
Примечания
https://github.com/Matthias-Wandel/jhead/commit/a50953a266583981b51a181c2fce73dad2ac5d7d (3.06.0.1)
https://github.com/Matthias-Wandel/jhead/issues/15
Crash in CLI tool, no security impact
EPSS
Процентиль: 34%
0.00138
Низкий
Связанные уязвимости
CVSS3: 7.8
ubuntu
почти 4 года назад
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
CVSS3: 7.8
nvd
почти 4 года назад
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
CVSS3: 7.8
github
почти 4 года назад
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
EPSS
Процентиль: 34%
0.00138
Низкий