Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-18064

Опубликовано: 08 окт. 2018
Источник: redhat
CVSS3: 6.3
EPSS Низкий

Описание

cairo through 1.15.14 has an out-of-bounds stack-memory write during processing of a crafted document by WebKitGTK+ because of the interaction between cairo-rectangular-scan-converter.c (the generate and render_rows functions) and cairo-image-compositor.c (the _cairo_image_spans_and_zero function).

Меры по смягчению последствий

Attackers can use specially-crafted files to trigger this stack-buffer overflow in cairo. Applications compiled with cairo, which do not parse untrusted 2D image files are not vulnerable to this flaw. cairo package in Red Hat Enterprise Linux 7 and 8 is compiled with gcc's Stack Smashing Protection, which may reduce the impact of this flaw to crash only.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5cairoNot affected
Red Hat Enterprise Linux 6cairoNot affected
Red Hat Enterprise Linux 6chromium-browserWill not fix
Red Hat Enterprise Linux 6firefoxWill not fix
Red Hat Enterprise Linux 6thunderbirdWill not fix
Red Hat Enterprise Linux 7cairoWill not fix
Red Hat Enterprise Linux 8cairoWill not fix
Red Hat Enterprise Linux 8mingw-cairoWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-121
https://bugzilla.redhat.com/show_bug.cgi?id=1637792cairo: Stack-based buffer overflow via parsing of crafted WebKitGTK+ document

EPSS

Процентиль: 71%
0.0148
Низкий

6.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 8 лет назад

cairo through 1.15.14 has an out-of-bounds stack-memory write during processing of a crafted document by WebKitGTK+ because of the interaction between cairo-rectangular-scan-converter.c (the generate and render_rows functions) and cairo-image-compositor.c (the _cairo_image_spans_and_zero function).

CVSS3: 6.5
nvd
почти 8 лет назад

cairo through 1.15.14 has an out-of-bounds stack-memory write during processing of a crafted document by WebKitGTK+ because of the interaction between cairo-rectangular-scan-converter.c (the generate and render_rows functions) and cairo-image-compositor.c (the _cairo_image_spans_and_zero function).

CVSS3: 6.5
debian
почти 8 лет назад

cairo through 1.15.14 has an out-of-bounds stack-memory write during p ...

CVSS3: 6.5
github
больше 4 лет назад

cairo through 1.15.14 has an out-of-bounds stack-memory write during processing of a crafted document by WebKitGTK+ because of the interaction between cairo-rectangular-scan-converter.c (the generate and render_rows functions) and cairo-image-compositor.c (the _cairo_image_spans_and_zero function).

EPSS

Процентиль: 71%
0.0148
Низкий

6.3 Medium

CVSS3