Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-0699

Опубликовано: 17 окт. 2022
Источник: debian

Описание

A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attacker to cause a denial of service or have other unspecified impact via control over malloc.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
shapelibfixed1.5.0-3package
shapelibno-dsabullseyepackage
shapelibno-dsabusterpackage

Примечания

  • https://github.com/OSGeo/shapelib/commit/c75b9281a5b9452d92e1682bdfe6019a13ed819f

  • https://github.com/OSGeo/shapelib/issues/39

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 2 лет назад

A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attacker to cause a denial of service or have other unspecified impact via control over malloc.

CVSS3: 9.8
nvd
больше 2 лет назад

A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attacker to cause a denial of service or have other unspecified impact via control over malloc.

CVSS3: 9.8
msrc
почти 2 года назад

Описание отсутствует

suse-cvrf
больше 3 лет назад

Security update for shapelib

CVSS3: 9.8
redos
больше 2 лет назад

Уязвимость shapelib