Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-16612

Опубликовано: 01 дек. 2017
Источник: ubuntu
Приоритет: medium
CVSS2: 5
CVSS3: 7.5

Описание

libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.

РелизСтатусПримечание
artful

released

1:1.1.14-3ubuntu0.1
devel

released

1:1.1.14-3ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1:1.1.14-1ubuntu0.14.04.1]]
esm-infra/xenial

released

1:1.1.14-1ubuntu0.16.04.1
precise/esm

DNE

trusty

released

1:1.1.14-1ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [1:1.1.14-1ubuntu0.14.04.1]
upstream

needs-triage

xenial

released

1:1.1.14-1ubuntu0.16.04.1
zesty

released

1:1.1.14-1ubuntu0.17.04.1

Показывать по

РелизСтатусПримечание
artful

released

1.14.0-1ubuntu0.1
devel

not-affected

1.14.0-2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1.4.0-1ubuntu1.1]]
esm-infra/xenial

released

1.12.0-1~ubuntu16.04.3
precise/esm

DNE

trusty

released

1.4.0-1ubuntu1.1
trusty/esm

DNE

trusty was released [1.4.0-1ubuntu1.1]
upstream

needs-triage

xenial

released

1.12.0-1~ubuntu16.04.3
zesty

ignored

end of life, was needed

Показывать по

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
redhat
около 8 лет назад

libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.

CVSS3: 7.5
nvd
около 8 лет назад

libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.

CVSS3: 7.5
debian
около 8 лет назад

libXcursor before 1.1.15 has various integer overflows that could lead ...

suse-cvrf
почти 8 лет назад

Security update for libXcursor

suse-cvrf
около 8 лет назад

Security update for libXcursor

5 Medium

CVSS2

7.5 High

CVSS3