Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-16612

Опубликовано: 01 дек. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.

РелизСтатусПримечание
artful

released

1:1.1.14-3ubuntu0.1
devel

released

1:1.1.14-3ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1:1.1.14-1ubuntu0.14.04.1]]
esm-infra-legacy/xenial

released

1:1.1.14-1ubuntu0.16.04.1
esm-infra/xenial

released

1:1.1.14-1ubuntu0.16.04.1
precise/esm

DNE

trusty

released

1:1.1.14-1ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [1:1.1.14-1ubuntu0.14.04.1]
upstream

needs-triage

xenial

released

1:1.1.14-1ubuntu0.16.04.1

Показывать по

РелизСтатусПримечание
artful

released

1.14.0-1ubuntu0.1
devel

not-affected

1.14.0-2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1.4.0-1ubuntu1.1]]
esm-infra-legacy/xenial

released

1.12.0-1~ubuntu16.04.3
esm-infra/xenial

released

1.12.0-1~ubuntu16.04.3
precise/esm

DNE

trusty

released

1.4.0-1ubuntu1.1
trusty/esm

DNE

trusty was released [1.4.0-1ubuntu1.1]
upstream

needs-triage

xenial

released

1.12.0-1~ubuntu16.04.3

Показывать по

EPSS

Процентиль: 92%
0.05173
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
redhat
больше 8 лет назад

libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.

CVSS3: 7.5
nvd
больше 8 лет назад

libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.

CVSS3: 7.5
debian
больше 8 лет назад

libXcursor before 1.1.15 has various integer overflows that could lead ...

suse-cvrf
больше 8 лет назад

Security update for libXcursor

suse-cvrf
больше 8 лет назад

Security update for libXcursor

EPSS

Процентиль: 92%
0.05173
Низкий

5 Medium

CVSS2

7.5 High

CVSS3