Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-9840

Опубликовано: 22 сент. 2016
Источник: redhat
CVSS3: 8.8
CVSS2: 4.3
EPSS Низкий

Описание

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10rsyncNot affected
Red Hat Enterprise Linux 5zlibNot affected
Red Hat Enterprise Linux 6zlibNot affected
Red Hat Enterprise Linux 9rsyncNot affected
Red Hat JBoss Enterprise Application Platform 5zlibNot affected
Red Hat JBoss Enterprise Application Platform 6zlibNot affected
Red Hat JBoss Enterprise Web Server 1zlibNot affected
Red Hat JBoss Enterprise Web Server 2zlibNot affected
Red Hat JBoss Enterprise Web Server 3zlibNot affected
Oracle Java for Red Hat Enterprise Linux 6java-1.8.0-oracleFixedRHSA-2017:299923.10.2017

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1402345zlib: Out-of-bound pointer arithmetic in inftrees.c

EPSS

Процентиль: 92%
0.09365
Низкий

8.8 High

CVSS3

4.3 Medium

CVSS2

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 8 лет назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

CVSS3: 8.8
nvd
около 8 лет назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

CVSS3: 8.8
msrc
3 месяца назад

Описание отсутствует

CVSS3: 8.8
debian
около 8 лет назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to ha ...

CVSS3: 8.8
github
около 3 лет назад

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

EPSS

Процентиль: 92%
0.09365
Низкий

8.8 High

CVSS3

4.3 Medium

CVSS2

Уязвимость CVE-2016-9840