Описание
A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in the function pdf_write_names in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS).
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| htmldoc | fixed | 1.9.15-2 | package | |
| htmldoc | fixed | 1.9.11-4+deb11u3 | bullseye | package |
| htmldoc | fixed | 1.9.3-1+deb10u4 | buster | package |
Примечания
https://github.com/michaelrsweet/htmldoc/issues/480
https://github.com/michaelrsweet/htmldoc/commit/46c8ec2b9bccb8ccabff52d998c5eee77a228348
Crash in CLI tool, no security impact
EPSS
Связанные уязвимости
A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in the function pdf_write_names in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS).
A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in the function pdf_write_names in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS).
A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in the function pdf_write_names in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS).
Уязвимость функции pdf_write_names() сценария htmldoc/htmldoc.cxx инструмента для конвертации документов HTMLDOC, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации, выполнить произвольный код или вызвать отказ в обслуживании
EPSS