Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-10126

Опубликовано: 18 апр. 2018
Источник: redhat
CVSS3: 3.3
EPSS Низкий

Описание

ijg-libjpeg before 9d, as used in tiff2pdf (from LibTIFF) and other products, does not check for a NULL pointer at a certain place in jpeg_fdct_16x16 in jfdctint.c.

Отчет

This issue did not affect the versions of libtiff as shipped with Red Hat Enterprise Linux 5, 6, and 7.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libtiffNot affected
Red Hat Enterprise Linux 6libtiffNot affected
Red Hat Enterprise Linux 7libtiffNot affected
Red Hat Enterprise Linux 8libtiffNot affected
Red Hat Enterprise Linux 9libtiffNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1572766libtiff: NULL pointer dereference in the jpeg_fdct_16x16 function in jfdctint.c

EPSS

Процентиль: 77%
0.0187
Низкий

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 8 лет назад

ijg-libjpeg before 9d, as used in tiff2pdf (from LibTIFF) and other products, does not check for a NULL pointer at a certain place in jpeg_fdct_16x16 in jfdctint.c.

CVSS3: 6.5
nvd
больше 8 лет назад

ijg-libjpeg before 9d, as used in tiff2pdf (from LibTIFF) and other products, does not check for a NULL pointer at a certain place in jpeg_fdct_16x16 in jfdctint.c.

CVSS3: 6.5
debian
больше 8 лет назад

ijg-libjpeg before 9d, as used in tiff2pdf (from LibTIFF) and other pr ...

CVSS3: 6.5
github
больше 4 лет назад

LibTIFF 4.0.9 has a NULL pointer dereference in the jpeg_fdct_16x16 function in jfdctint.c.

EPSS

Процентиль: 77%
0.0187
Низкий

3.3 Low

CVSS3