Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-25308

Опубликовано: 06 сент. 2022
Источник: debian
EPSS Низкий

Описание

A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which leads to a possible memory leak or a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
fribidifixed1.0.8-2.1package
fribidifixed1.0.8-2+deb11u1bullseyepackage
fribidifixed1.0.5-3.1+deb10u2busterpackage

Примечания

  • https://github.com/fribidi/fribidi/issues/181

  • https://github.com/fribidi/fribidi/pull/184

  • https://github.com/fribidi/fribidi/commit/ad3a19e6372b1e667128ed1ea2f49919884587e1

EPSS

Процентиль: 5%
0.00023
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 3 года назад

A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which leads to a possible memory leak or a denial of service.

CVSS3: 7
redhat
больше 3 лет назад

A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which leads to a possible memory leak or a denial of service.

CVSS3: 7.8
nvd
почти 3 года назад

A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which leads to a possible memory leak or a denial of service.

CVSS3: 7.8
msrc
почти 3 года назад

Описание отсутствует

CVSS3: 7.8
github
почти 3 года назад

A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which leads to a possible memory leak or a denial of service.

EPSS

Процентиль: 5%
0.00023
Низкий