Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-5545

Опубликовано: 21 янв. 2017
Источник: nvd
CVSS3: 9.1
CVSS2: 6.4
EPSS Низкий

Описание

The main function in plistutil.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via Apple Property List data that is too short.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:libimobiledevice:libplist:*:*:*:*:*:*:*:*
Версия до 1.12 (включая)

EPSS

Процентиль: 61%
0.00416
Низкий

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 9 лет назад

The main function in plistutil.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via Apple Property List data that is too short.

CVSS3: 4.4
redhat
около 9 лет назад

The main function in plistutil.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via Apple Property List data that is too short.

CVSS3: 9.1
debian
около 9 лет назад

The main function in plistutil.c in libimobiledevice libplist through ...

CVSS3: 9.1
github
больше 3 лет назад

The main function in plistutil.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via Apple Property List data that is too short.

suse-cvrf
почти 9 лет назад

Security update for libplist

EPSS

Процентиль: 61%
0.00416
Низкий

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-125