Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-0911

Опубликовано: 06 фев. 2024
Источник: debian
EPSS Низкий

Описание

A flaw was found in indent, a program for formatting C code. This issue may allow an attacker to trick a user into processing a specially crafted file to trigger a heap-based buffer overflow, causing the application to crash.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
indentfixed2.2.13-4package
indentfixed2.2.12-4+deb12u3bookwormpackage
indentfixed2.2.12-1+deb11u1bullseyepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2259883

  • https://bugzilla.redhat.com/show_bug.cgi?id=2260399

  • https://lists.gnu.org/archive/html/bug-indent/2024-01/msg00001.html

  • Crash in CLI tool, no security impact

EPSS

Процентиль: 17%
0.00054
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 2 лет назад

A flaw was found in indent, a program for formatting C code. This issue may allow an attacker to trick a user into processing a specially crafted file to trigger a heap-based buffer overflow, causing the application to crash.

CVSS3: 5.5
redhat
около 2 лет назад

A flaw was found in indent, a program for formatting C code. This issue may allow an attacker to trick a user into processing a specially crafted file to trigger a heap-based buffer overflow, causing the application to crash.

CVSS3: 5.5
nvd
около 2 лет назад

A flaw was found in indent, a program for formatting C code. This issue may allow an attacker to trick a user into processing a specially crafted file to trigger a heap-based buffer overflow, causing the application to crash.

suse-cvrf
почти 2 года назад

Security update for indent

suse-cvrf
почти 2 года назад

Security update for indent

EPSS

Процентиль: 17%
0.00054
Низкий