Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-17233

Опубликовано: 15 сент. 2018
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 10 (Newton)hdf5Fix deferred
Red Hat OpenStack Platform 12 (Pike)hdf5Affected
Red Hat OpenStack Platform 13 (Queens)hdf5Fix deferred
Red Hat OpenStack Platform 14 (Rocky)hdf5Fix deferred
Red Hat OpenStack Platform 8 (Liberty)hdf5Fix deferred
Red Hat OpenStack Platform 9 (Mitaka)hdf5Fix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1633853hdf5: SIGFPE signal in H5D__create_chunk_file_map_hyper() of H5Dchunk.c

EPSS

Процентиль: 50%
0.00273
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.

CVSS3: 6.5
nvd
больше 7 лет назад

A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.

CVSS3: 6.5
debian
больше 7 лет назад

A SIGFPE signal is raised in the function H5D__create_chunk_file_map_h ...

CVSS3: 6.5
github
больше 3 лет назад

A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c in the HDF HDF5 through 1.10.3 library during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack.

CVSS3: 6.5
fstec
больше 7 лет назад

Уязвимость компонента H5Dchunk.c библиотеки обработки HDF файлов HDF5, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 50%
0.00273
Низкий

4.3 Medium

CVSS3