Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-9831

Опубликовано: 24 июн. 2017
Источник: nvd
CVSS3: 6.8
CVSS2: 4.6
EPSS Низкий

Описание

An integer overflow vulnerability in the ptp_unpack_EOS_CustomFuncEx function of the ptp-pack.c file of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:libmtp_project:libmtp:1.1.12:*:*:*:*:*:*:*

EPSS

Процентиль: 46%
0.00232
Низкий

6.8 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 6.8
ubuntu
больше 8 лет назад

An integer overflow vulnerability in the ptp_unpack_EOS_CustomFuncEx function of the ptp-pack.c file of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 3.1
redhat
почти 9 лет назад

An integer overflow vulnerability in the ptp_unpack_EOS_CustomFuncEx function of the ptp-pack.c file of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

CVSS3: 6.8
debian
больше 8 лет назад

An integer overflow vulnerability in the ptp_unpack_EOS_CustomFuncEx f ...

CVSS3: 6.8
github
больше 3 лет назад

An integer overflow vulnerability in the ptp_unpack_EOS_CustomFuncEx function of the ptp-pack.c file of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

EPSS

Процентиль: 46%
0.00232
Низкий

6.8 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-190