Описание
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
Ссылки
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:jhead_project:jhead:3.04:*:*:*:*:*:*:*
cpe:2.3:a:jhead_project:jhead:3.05:*:*:*:*:*:*:*
EPSS
Процентиль: 34%
0.00138
Низкий
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-787
Связанные уязвимости
CVSS3: 7.8
ubuntu
почти 4 года назад
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
CVSS3: 7.8
debian
почти 4 года назад
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3. ...
CVSS3: 7.8
github
почти 4 года назад
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
EPSS
Процентиль: 34%
0.00138
Низкий
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-787