Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-9888

Опубликовано: 08 дек. 2016
Источник: nvd
CVSS3: 5.5
CVSS2: 4.3
EPSS Низкий

Описание

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnome:libgsf:*:*:*:*:*:*:*:*
Версия до 1.14.40 (включая)

EPSS

Процентиль: 65%
0.00482
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 9 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

CVSS3: 3.3
redhat
около 9 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

CVSS3: 5.5
debian
около 9 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-ta ...

CVSS3: 5.5
github
больше 3 лет назад

An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.41 can be exploited to trigger a Null pointer dereference and subsequently cause a crash via a crafted TAR file.

suse-cvrf
больше 1 года назад

Security update for libgsf

EPSS

Процентиль: 65%
0.00482
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-476