Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-6949

Опубликовано: 16 мар. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.1

Описание

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a nonstandard CHICKEN-specific extension to allocate an SRFI-4 vector in unmanaged memory, the vector size would be used in unsanitised form as an argument to malloc(). With an unexpected size, the impact may have been a segfault or buffer overflow.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

4.12.0-0.3
cosmic

not-affected

4.12.0-0.3
devel

not-affected

4.12.0-0.3
disco

not-affected

4.12.0-0.3
eoan

not-affected

4.12.0-0.3
esm-apps/bionic

not-affected

4.12.0-0.3
esm-apps/focal

not-affected

4.12.0-0.3
esm-apps/jammy

not-affected

4.12.0-0.3
esm-apps/noble

not-affected

4.12.0-0.3

Показывать по

EPSS

Процентиль: 66%
0.00516
Низкий

6.8 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
почти 9 лет назад

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a nonstandard CHICKEN-specific extension to allocate an SRFI-4 vector in unmanaged memory, the vector size would be used in unsanitised form as an argument to malloc(). With an unexpected size, the impact may have been a segfault or buffer overflow.

CVSS3: 8.1
debian
почти 9 лет назад

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a ...

CVSS3: 8.1
github
больше 3 лет назад

An issue was discovered in CHICKEN Scheme through 4.12.0. When using a nonstandard CHICKEN-specific extension to allocate an SRFI-4 vector in unmanaged memory, the vector size would be used in unsanitised form as an argument to malloc(). With an unexpected size, the impact may have been a segfault or buffer overflow.

EPSS

Процентиль: 66%
0.00516
Низкий

6.8 Medium

CVSS2

8.1 High

CVSS3