Описание
ImageSharp is a 2D graphics API. An Out-of-bounds Write vulnerability has been found in the ImageSharp gif decoder, allowing attackers to cause a crash using a specially crafted gif. This can potentially lead to denial of service. The problem has been patched. All users are advised to upgrade to v3.1.7 or v2.1.10.
Ссылки
- ExploitIssue Tracking
- Issue TrackingPatch
- Vendor Advisory
- ExploitIssue Tracking
Уязвимые конфигурации
Конфигурация 1Версия до 2.1.10 (исключая)Версия от 3.0.0 (включая) до 3.1.7 (исключая)
Одно из
cpe:2.3:a:sixlabors:imagesharp:*:*:*:*:*:*:*:*
cpe:2.3:a:sixlabors:imagesharp:*:*:*:*:*:*:*:*
EPSS
Процентиль: 50%
0.00272
Низкий
7.5 High
CVSS3
Дефекты
CWE-787
Связанные уязвимости
EPSS
Процентиль: 50%
0.00272
Низкий
7.5 High
CVSS3
Дефекты
CWE-787