Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-1010305

Опубликовано: 15 июл. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.5

Описание

libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: Information Disclosure. The component is: function chmd_read_headers() in libmspack(file libmspack/mspack/chmd.c). The attack vector is: the victim must open a specially crafted chm file. The fixed version is: after commit 2f084136cfe0d05e5bf5703f3e83c6d955234b4d.

РелизСтатусПримечание
bionic

not-affected

uses system libmspack
cosmic

not-affected

uses system libmspack
devel

not-affected

uses system libmspack
disco

not-affected

uses system libmspack
esm-infra-legacy/trusty

not-affected

0.100.3+dfsg-0ubuntu0.14.04.1+esm1
esm-infra/bionic

not-affected

uses system libmspack
esm-infra/focal

not-affected

uses system libmspack
esm-infra/xenial

not-affected

uses system libmspack
focal

not-affected

uses system libmspack
jammy

not-affected

uses system libmspack

Показывать по

РелизСтатусПримечание
bionic

released

0.6-3ubuntu0.3
cosmic

ignored

end of life
devel

released

0.10.1-1
disco

released

0.10.1-1
esm-infra-legacy/trusty

needed

esm-infra/bionic

not-affected

0.6-3ubuntu0.3
esm-infra/focal

not-affected

0.10.1-1
esm-infra/xenial

not-affected

0.5-1ubuntu0.16.04.4
focal

released

0.10.1-1
jammy

released

0.10.1-1

Показывать по

EPSS

Процентиль: 63%
0.00465
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 2.5
redhat
почти 6 лет назад

libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: Information Disclosure. The component is: function chmd_read_headers() in libmspack(file libmspack/mspack/chmd.c). The attack vector is: the victim must open a specially crafted chm file. The fixed version is: after commit 2f084136cfe0d05e5bf5703f3e83c6d955234b4d.

CVSS3: 5.5
nvd
почти 6 лет назад

libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: Information Disclosure. The component is: function chmd_read_headers() in libmspack(file libmspack/mspack/chmd.c). The attack vector is: the victim must open a specially crafted chm file. The fixed version is: after commit 2f084136cfe0d05e5bf5703f3e83c6d955234b4d.

CVSS3: 5.5
debian
почти 6 лет назад

libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: I ...

suse-cvrf
около 5 лет назад

Security update for libmspack

suse-cvrf
около 5 лет назад

Security update for libmspack

EPSS

Процентиль: 63%
0.00465
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3