Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-8754

Опубликовано: 18 мар. 2018
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 2.1
CVSS3: 5.5

Описание

The libevt_record_values_read_event() function in libevt_record_values.c in libevt before 2018-03-17 does not properly check for out-of-bounds values of user SID data size, strings size, or data size. NOTE: the vendor has disputed this as described in libyal/libevt issue 5 on GitHub

РелизСтатусПримечание
artful

released

20170120-1+deb9u1build0.17.10.1
bionic

released

20170120-2
cosmic

released

20170120-2
devel

released

20170120-2
disco

released

20170120-2
eoan

released

20170120-2
esm-apps/bionic

released

20170120-2
esm-apps/focal

released

20170120-2
esm-apps/jammy

released

20170120-2
esm-apps/noble

released

20170120-2

Показывать по

EPSS

Процентиль: 16%
0.0005
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
nvd
почти 8 лет назад

The libevt_record_values_read_event() function in libevt_record_values.c in libevt before 2018-03-17 does not properly check for out-of-bounds values of user SID data size, strings size, or data size. NOTE: the vendor has disputed this as described in libyal/libevt issue 5 on GitHub

CVSS3: 5.5
debian
почти 8 лет назад

The libevt_record_values_read_event() function in libevt_record_values ...

CVSS3: 5.5
github
больше 3 лет назад

** DISPUTED ** The libevt_record_values_read_event() function in libevt_record_values.c in libevt before 2018-03-17 does not properly check for out-of-bounds values of user SID data size, strings size, or data size. NOTE: the vendor has disputed this as described in libyal/libevt issue 5 on GitHub.

EPSS

Процентиль: 16%
0.0005
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3