Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-19827

Опубликовано: 03 дек. 2018
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a denial of service (application crash) or possibly have unspecified other impact.

A type confusion flaw was discovered in libsass in Expand::operator() in expand.cpp. An attacker could use this flaw to make an application that uses libsass crash or execute arbitrary code.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8libsassNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-843->CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1671377libsass: Use-after-free in SharedPtr class resulting in a denial of service

EPSS

Процентиль: 69%
0.00615
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 7 лет назад

In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a denial of service (application crash) or possibly have unspecified other impact.

CVSS3: 8.8
nvd
около 7 лет назад

In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a denial of service (application crash) or possibly have unspecified other impact.

msrc
2 месяца назад

In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a denial of service (application crash) or possibly have unspecified other impact.

CVSS3: 8.8
debian
около 7 лет назад

In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedP ...

CVSS3: 8.8
github
больше 3 лет назад

In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a denial of service (application crash) or possibly have unspecified other impact.

EPSS

Процентиль: 69%
0.00615
Низкий

8.8 High

CVSS3