Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-9911

Опубликовано: 04 янв. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5
CVSS3: 9.8

Описание

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-apps/xenial

ignored

abandoned
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was ignored [abandoned]]
esm-infra/focal

DNE

focal

DNE

Показывать по

РелизСтатусПримечание
artful

not-affected

bionic

not-affected

cosmic

not-affected

devel

not-affected

disco

not-affected

eoan

not-affected

esm-apps/noble

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
esm-infra/focal

DNE

focal was not-affected
focal

not-affected

Показывать по

РелизСтатусПримечание
artful

not-affected

50.1.0+build2-0ubuntu1
bionic

not-affected

50.1.0+build2-0ubuntu1
cosmic

not-affected

50.1.0+build2-0ubuntu1
devel

not-affected

50.1.0+build2-0ubuntu1
disco

not-affected

50.1.0+build2-0ubuntu1
eoan

not-affected

50.1.0+build2-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [50.1.0+build2-0ubuntu0.14.04.1]]
esm-infra/focal

DNE

focal

not-affected

50.1.0+build2-0ubuntu1
groovy

not-affected

50.1.0+build2-0ubuntu1

Показывать по

РелизСтатусПримечание
artful

not-affected

bionic

not-affected

cosmic

not-affected

devel

not-affected

disco

not-affected

eoan

not-affected

esm-infra-legacy/trusty

released

52.1-3ubuntu0.5
esm-infra/bionic

not-affected

esm-infra/focal

not-affected

esm-infra/xenial

not-affected

55.1-7

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-apps/xenial

ignored

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
esm-infra/focal

DNE

focal

DNE

Показывать по

РелизСтатусПримечание
artful

not-affected

1.17.9-0ubuntu1
bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [1.17.9-0ubuntu0.14.04.1]]
esm-infra/focal

DNE

esm-infra/xenial

not-affected

1.17.9-0ubuntu0.16.04.1
focal

DNE

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

cosmic

not-affected

devel

not-affected

disco

not-affected

eoan

not-affected

esm-apps/bionic

not-affected

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

esm-apps/noble

not-affected

Показывать по

РелизСтатусПримечание
artful

not-affected

1:45.3.0+build1-0ubuntu4
bionic

not-affected

1:45.3.0+build1-0ubuntu4
cosmic

not-affected

1:45.3.0+build1-0ubuntu4
devel

not-affected

1:45.3.0+build1-0ubuntu4
disco

not-affected

1:45.3.0+build1-0ubuntu4
eoan

not-affected

1:45.3.0+build1-0ubuntu4
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [1:45.3.0+build1-0ubuntu0.14.04.4]]
esm-infra/focal

DNE

focal

not-affected

1:45.3.0+build1-0ubuntu4
groovy

not-affected

1:45.3.0+build1-0ubuntu4

Показывать по

EPSS

Процентиль: 82%
0.01804
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 8.4
redhat
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

CVSS3: 9.8
nvd
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components for Unicode (ICU) before 54.1 for C/C++ allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted uloc_getDisplayName call.

CVSS3: 9.8
debian
около 9 лет назад

Stack-based buffer overflow in the ures_getByKeyWithFallback function ...

suse-cvrf
около 9 лет назад

Security update for icu

suse-cvrf
около 8 лет назад

Recommended update for icu

EPSS

Процентиль: 82%
0.01804
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Уязвимость CVE-2014-9911