Описание
A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in PutLE16().
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 0.6.1-2ubuntu0.18.04.1 |
| devel | released | 0.6.1-2ubuntu1 |
| esm-infra-legacy/trusty | released | 0.4.0-4ubuntu0.1~esm1 |
| esm-infra/bionic | released | 0.6.1-2ubuntu0.18.04.1 |
| esm-infra/focal | released | 0.6.1-2ubuntu0.20.04.1 |
| esm-infra/xenial | released | 0.4.4-1ubuntu0.1~esm1 |
| focal | released | 0.6.1-2ubuntu0.20.04.1 |
| groovy | released | 0.6.1-2ubuntu0.20.10.1 |
| hirsute | released | 0.6.1-2ubuntu0.21.04.1 |
| impish | released | 0.6.1-2ubuntu1 |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in PutLE16().
A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in PutLE16().
A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in PutLE16().
A heap-based buffer overflow was found in libwebp in versions before 1 ...
A flaw was found in libwebp in versions before 1.0.1. A heap-based buffer overflow was found in PutLE16(). The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3