Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-7998

Опубликовано: 09 мар. 2018
Источник: ubuntu
Приоритет: medium
CVSS2: 5.1
CVSS3: 7.5

Описание

In libvips before 8.6.3, a NULL function pointer dereference vulnerability was found in the vips_region_generate function in region.c, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted image file. This occurs because of a race condition involving a failed delayed load and other worker threads.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

not-affected

8.6.3
disco

not-affected

8.6.3
eoan

not-affected

8.6.3
esm-apps/bionic

released

8.4.5-1ubuntu0.1~esm1
esm-apps/focal

not-affected

8.6.3
esm-apps/jammy

not-affected

8.6.3
esm-apps/xenial

released

8.2.2-1ubuntu0.1~esm1

Показывать по

5.1 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
почти 8 лет назад

In libvips before 8.6.3, a NULL function pointer dereference vulnerability was found in the vips_region_generate function in region.c, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted image file. This occurs because of a race condition involving a failed delayed load and other worker threads.

CVSS3: 7.5
debian
почти 8 лет назад

In libvips before 8.6.3, a NULL function pointer dereference vulnerabi ...

CVSS3: 7.5
github
больше 3 лет назад

In libvips before 8.6.3, a NULL function pointer dereference vulnerability was found in the vips_region_generate function in region.c, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted image file. This occurs because of a race condition involving a failed delayed load and other worker threads.

5.1 Medium

CVSS2

7.5 High

CVSS3