Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-5209

Опубликовано: 12 янв. 2017
Источник: redhat
CVSS3: 4.4

Описание

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libplistNot affected
Red Hat Enterprise Linux 7libplistNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1412613libplist: base64decode buffer over-read via split encoded Apple Property List data

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 9 лет назад

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

CVSS3: 9.1
nvd
около 9 лет назад

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

CVSS3: 9.1
debian
около 9 лет назад

The base64decode function in base64.c in libimobiledevice libplist thr ...

CVSS3: 9.1
github
больше 3 лет назад

The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.

suse-cvrf
почти 9 лет назад

Security update for libplist

4.4 Medium

CVSS3