Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-16899

Опубликовано: 20 нояб. 2017
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5.8
CVSS3: 7.1

Описание

An array index error in the fig2dev program in Xfig 3.2.6a allows remote attackers to cause a denial-of-service attack or information disclosure with a maliciously crafted Fig format file, related to a negative font value in dev/gentikz.c, and the read_textobject functions in read.c and read1_3.c.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

1:3.2.6a-6
cosmic

not-affected

1:3.2.6a-6
devel

not-affected

1:3.2.6a-6
esm-apps/bionic

not-affected

1:3.2.6a-6
esm-infra-legacy/trusty

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

released

1:3.2.6a-5

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
esm-infra/xenial

not-affected

precise/esm

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 62%
0.00426
Низкий

5.8 Medium

CVSS2

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
около 8 лет назад

An array index error in the fig2dev program in Xfig 3.2.6a allows remote attackers to cause a denial-of-service attack or information disclosure with a maliciously crafted Fig format file, related to a negative font value in dev/gentikz.c, and the read_textobject functions in read.c and read1_3.c.

CVSS3: 7.1
nvd
около 8 лет назад

An array index error in the fig2dev program in Xfig 3.2.6a allows remote attackers to cause a denial-of-service attack or information disclosure with a maliciously crafted Fig format file, related to a negative font value in dev/gentikz.c, and the read_textobject functions in read.c and read1_3.c.

CVSS3: 7.1
debian
около 8 лет назад

An array index error in the fig2dev program in Xfig 3.2.6a allows remo ...

suse-cvrf
почти 8 лет назад

Security update for transfig

suse-cvrf
около 8 лет назад

Security update for transfig

EPSS

Процентиль: 62%
0.00426
Низкий

5.8 Medium

CVSS2

7.1 High

CVSS3