Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-16707

Опубликовано: 18 мар. 2019
Источник: redhat
CVSS3: 5.8
EPSS Низкий

Описание

Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx.

Отчет

This is unlikely to be an issue in a real world scenario, as it requires specially crafted Hunspell dictionaries, which are not shipped with Red Hat Enterprise Linux. Additionally, applications using Hunspell will likely filter out invalid input before passing it on, which further limits the impact.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6hunspellOut of support scope
Red Hat Enterprise Linux 8hunspellNot affected
Red Hat Enterprise Linux 7hunspellFixedRHSA-2020:397129.09.2020

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1771026hunspell: out-of-bounds read in SuggestMgr::leftcommonsubstring in suggestmgr.cxx

EPSS

Процентиль: 74%
0.01649
Низкий

5.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 7 лет назад

Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx.

CVSS3: 6.5
nvd
почти 7 лет назад

Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx.

CVSS3: 6.5
msrc
11 месяцев назад

Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx.

CVSS3: 6.5
debian
почти 7 лет назад

Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommon ...

suse-cvrf
почти 6 лет назад

Security update for hunspell

EPSS

Процентиль: 74%
0.01649
Низкий

5.8 Medium

CVSS3