Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-20786

Опубликовано: 24 дек. 2018
Источник: redhat
CVSS3: 5.3

Описание

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

Отчет

Red Hat has determined this flaw to be of LOW impact as the vulnerable code is not used when compiling and building /usr/bin/vi; the code is not used because /usr/bin/vi is built with --with-features=small.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8vimFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1680588libvterm: NULL pointer dereference in vterm_screen_set_callbacks

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

CVSS3: 7.5
nvd
почти 7 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

CVSS3: 7.5
debian
почти 7 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandl ...

CVSS3: 7.5
github
больше 3 лет назад

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (application crash), related to screen.c, state.c, and vterm.c.

5.3 Medium

CVSS3