Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-44617

Опубликовано: 17 янв. 2023
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libXpmOut of support scope
Red Hat Enterprise Linux 7libXpmOut of support scope
Red Hat Enterprise Linux 8libXpmFixedRHSA-2023:037923.01.2023
Red Hat Enterprise Linux 8.1 Update Services for SAP SolutionslibXpmFixedRHSA-2023:038423.01.2023
Red Hat Enterprise Linux 8.2 Advanced Update SupportlibXpmFixedRHSA-2023:038023.01.2023
Red Hat Enterprise Linux 8.2 Telecommunications Update ServicelibXpmFixedRHSA-2023:038023.01.2023
Red Hat Enterprise Linux 8.2 Update Services for SAP SolutionslibXpmFixedRHSA-2023:038023.01.2023
Red Hat Enterprise Linux 8.4 Extended Update SupportlibXpmFixedRHSA-2023:038223.01.2023
Red Hat Enterprise Linux 8.6 Extended Update SupportlibXpmFixedRHSA-2023:037823.01.2023
Red Hat Enterprise Linux 9libXpmFixedRHSA-2023:038323.01.2023

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-20->CWE-835
https://bugzilla.redhat.com/show_bug.cgi?id=2160193libXpm: Runaway loop on width of 0 and enormous height

EPSS

Процентиль: 9%
0.00035
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.

CVSS3: 7.5
nvd
больше 2 лет назад

A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.

CVSS3: 7.5
debian
больше 2 лет назад

A flaw was found in libXpm. When processing a file with width of 0 and ...

CVSS3: 7.5
github
больше 2 лет назад

A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.

CVSS3: 7.5
fstec
больше 2 лет назад

Уязвимость функции ParsePixels () библиотеки для работы с файлами изображений X Pixmap (XPM) libXpm, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 9%
0.00035
Низкий

7.5 High

CVSS3