Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-15564

Опубликовано: 07 фев. 2026
Источник: debian
EPSS Низкий

Описание

A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::operator of the file src/value.cpp. The manipulation leads to divide by zero. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mapnikfixed4.2.1+ds-2package
mapnikno-dsatrixiepackage
mapnikno-dsabookwormpackage
mapnikpostponedbullseyepackage

Примечания

  • https://github.com/mapnik/mapnik/issues/4545

  • Fixed by: https://github.com/mapnik/mapnik/commit/fd54b92004f29e223345ddcbcc36257abd94952b

  • Tests: https://github.com/mapnik/mapnik/commit/e82980257651ec472561ccb9f78678ef58c75f83

EPSS

Процентиль: 11%
0.00211
Низкий

Связанные уязвимости

CVSS3: 3.3
ubuntu
7 месяцев назад

A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::operator of the file src/value.cpp. The manipulation leads to divide by zero. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 3.3
nvd
7 месяцев назад

A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::operator of the file src/value.cpp. The manipulation leads to divide by zero. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 3.3
github
7 месяцев назад

A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::operator of the file src/value.cpp. The manipulation leads to divide by zero. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

EPSS

Процентиль: 11%
0.00211
Низкий