Описание
The Imager package before 1.025 for Perl has a heap-based buffer overflow leading to denial of service, or possibly unspecified other impact, when the trim() method is called on a crafted input image.
Ссылки
- Issue TrackingPatch
- Issue Tracking
- ExploitIssue Tracking
- Release Notes
Уязвимые конфигурации
Конфигурация 1Версия до 1.025 (исключая)
cpe:2.3:a:tonycoz:imager:*:*:*:*:*:perl:*:*
EPSS
Процентиль: 31%
0.00383
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-787
CWE-120
Связанные уязвимости
CVSS3: 5.5
ubuntu
почти 2 года назад
The Imager package before 1.025 for Perl has a heap-based buffer overflow leading to denial of service, or possibly unspecified other impact, when the trim() method is called on a crafted input image.
CVSS3: 5.5
debian
почти 2 года назад
The Imager package before 1.025 for Perl has a heap-based buffer overf ...
CVSS3: 5.5
github
почти 2 года назад
The Imager package before 1.025 for Perl has a heap-based buffer overflow leading to denial of service, or possibly unspecified other impact, when the trim() method is called on a crafted input image.
EPSS
Процентиль: 31%
0.00383
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-787
CWE-120