Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-17457

Опубликовано: 07 дек. 2017
Источник: redhat
CVSS3: 3.3

Описание

[REJECTED CVE] An out of bounds read in the function d2ulaw_array() in ulaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

Отчет

This flaw was found to be a duplicate of CVE-2017-14246. Please see https://access.redhat.com/security/cve/CVE-2017-14246 for information about affected products and security errata.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libsndfileNot affected
Red Hat Enterprise Linux 7libsndfileNot affected
Red Hat Enterprise Linux 9libsndfileNot affected

Показывать по

Дополнительная информация

Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1524571libsndfile: SEGV on unknown address in the function d2ulaw_array()

3.3 Low

CVSS3

Связанные уязвимости

ubuntu
около 8 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-14246. Reason: This candidate is a duplicate of CVE-2017-14246. Notes: All CVE users should reference CVE-2017-14246 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

nvd
около 8 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-14246. Reason: This candidate is a duplicate of CVE-2017-14246. Notes: All CVE users should reference CVE-2017-14246 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

suse-cvrf
больше 7 лет назад

Security update for libsndfile

suse-cvrf
больше 7 лет назад

Security update for libsndfile

suse-cvrf
почти 7 лет назад

Security update for libsndfile

3.3 Low

CVSS3