Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-5209

Опубликовано: 11 янв. 2017
Источник: nvd
CVSS3: 9.1
CVSS2: 6.4
EPSS Низкий

Описание

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:libimobiledevice:libplist:*:*:*:*:*:*:*:*
Версия до 1.12 (включая)

EPSS

Процентиль: 59%
0.00381
Низкий

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 9 лет назад

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

CVSS3: 4.4
redhat
около 9 лет назад

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

CVSS3: 9.1
debian
около 9 лет назад

The base64decode function in base64.c in libimobiledevice libplist thr ...

CVSS3: 9.1
github
больше 3 лет назад

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

suse-cvrf
почти 9 лет назад

Security update for libplist

EPSS

Процентиль: 59%
0.00381
Низкий

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-125