Описание
International Components for Unicode (ICU) for C/C++ 63.1 has an integer overflow in number::impl::DecimalQuantity::toScientificString() in i18n/number_decimalquantity.cpp.
Отчет
This issue did not affect the versions of icu as shipped with Red Hat Enterprise Linux 5, 6 and 7 as they did not include the vulnerable class. This issue did not affect the versions of java-1.6.0-openjdk, java-1.7.0-openjdk and java-1.8.0-openjdk as shipped with Red Hat Enterprise Linux 5, 6 and 7 as they did not include the vulnerable class. This issue did not affect the versions of webkitgtk4 as shipped with Red Hat Enterprise Linux 7 as they did not include the vulnerable class.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | icu | Not affected | ||
| Red Hat Enterprise Linux 5 | java-1.6.0-openjdk | Not affected | ||
| Red Hat Enterprise Linux 5 | java-1.7.0-openjdk | Not affected | ||
| Red Hat Enterprise Linux 6 | icu | Not affected | ||
| Red Hat Enterprise Linux 6 | java-1.6.0-openjdk | Not affected | ||
| Red Hat Enterprise Linux 6 | java-1.7.0-openjdk | Not affected | ||
| Red Hat Enterprise Linux 6 | java-1.8.0-openjdk | Not affected | ||
| Red Hat Enterprise Linux 7 | icu | Not affected | ||
| Red Hat Enterprise Linux 7 | java-1.6.0-openjdk | Not affected | ||
| Red Hat Enterprise Linux 7 | java-1.7.0-openjdk | Not affected |
Показывать по
Дополнительная информация
Статус:
9.8 Critical
CVSS3
Связанные уязвимости
International Components for Unicode (ICU) for C/C++ 63.1 has an integer overflow in number::impl::DecimalQuantity::toScientificString() in i18n/number_decimalquantity.cpp.
International Components for Unicode (ICU) for C/C++ 63.1 has an integer overflow in number::impl::DecimalQuantity::toScientificString() in i18n/number_decimalquantity.cpp.
International Components for Unicode (ICU) for C/C++ 63.1 has an integ ...
International Components for Unicode (ICU) for C/C++ 63.1 has an integer overflow in number::impl::DecimalQuantity::toScientificString() in i18n/number_decimalquantity.cpp.
9.8 Critical
CVSS3