Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-9911

Опубликовано: 22 нояб. 2016
Источник: redhat
CVSS3: 8.4
CVSS2: 6.8
EPSS Низкий

Описание

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Directory Server 8icuWill not fix
Red Hat Enterprise Linux 5icuWill not fix
Red Hat Enterprise Linux 6icuWill not fix
Red Hat Enterprise Linux 7icuWill not fix
Red Hat OpenShift Enterprise 2icuWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-121
https://bugzilla.redhat.com/show_bug.cgi?id=1383569icu: stack-based buffer overflow in uloc_getDisplayName

EPSS

Процентиль: 82%
0.01804
Низкий

8.4 High

CVSS3

6.8 Medium

CVSS2

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

CVSS3: 9.8
nvd
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

CVSS3: 9.8
debian
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function ...

suse-cvrf
около 9 лет назад

Security update for icu

suse-cvrf
около 8 лет назад

Recommended update for icu

EPSS

Процентиль: 82%
0.01804
Низкий

8.4 High

CVSS3

6.8 Medium

CVSS2