Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-7555

Опубликовано: 21 дек. 2015
Источник: redhat
CVSS2: 5.1
EPSS Низкий

Описание

Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allows attackers to cause a denial of service (program crash) via crafted image and logical screen width fields in a GIF file.

Отчет

This issue affects the versions of giflib as shipped with Red Hat Enterprise Linux 5, 6 and 7. Red Hat Product Security has rated this issue as having Moderate security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5giflibWill not fix
Red Hat Enterprise Linux 6giflibWill not fix
Red Hat Enterprise Linux 7giflibWill not fix
Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) Operational ToolsphantomjsNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1290785giflib: Heap-based buffer overflow in giffix utility

EPSS

Процентиль: 64%
0.00466
Низкий

5.1 Medium

CVSS2

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 10 лет назад

Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allows attackers to cause a denial of service (program crash) via crafted image and logical screen width fields in a GIF file.

CVSS3: 5.5
nvd
почти 10 лет назад

Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allows attackers to cause a denial of service (program crash) via crafted image and logical screen width fields in a GIF file.

CVSS3: 5.5
debian
почти 10 лет назад

Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allow ...

suse-cvrf
около 10 лет назад

Security update for giflib

suse-cvrf
около 10 лет назад

Security update for giflib

EPSS

Процентиль: 64%
0.00466
Низкий

5.1 Medium

CVSS2