Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-6313

Опубликовано: 21 фев. 2017
Источник: redhat
CVSS3: 4.4
EPSS Низкий

Описание

Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5gdk-pixbufNot affected
Red Hat Enterprise Linux 6gdk-pixbuf2Not affected
Red Hat Enterprise Linux 7gdk-pixbuf2Will not fix
Red Hat Enterprise Virtualization 3mingw-virt-viewerWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=1427217gdk-pixbuf: Integer underflow in io-icns.c

EPSS

Процентиль: 55%
0.00329
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 9 лет назад

Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file.

CVSS3: 7.1
nvd
почти 9 лет назад

Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file.

CVSS3: 7.1
debian
почти 9 лет назад

Integer underflow in the load_resources function in io-icns.c in gdk-p ...

CVSS3: 7.1
github
больше 3 лет назад

Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file.

suse-cvrf
больше 8 лет назад

Security update for gdk-pixbuf

EPSS

Процентиль: 55%
0.00329
Низкий

4.4 Medium

CVSS3