Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-17402

Опубликовано: 09 окт. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.5

Описание

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

РелизСтатусПримечание
bionic

released

0.25-3.1ubuntu0.18.04.4
devel

released

0.25-4ubuntu3
disco

released

0.25-4ubuntu1.2
eoan

released

0.25-4ubuntu2.1
esm-infra-legacy/trusty

DNE

esm-infra/bionic

released

0.25-3.1ubuntu0.18.04.4
esm-infra/xenial

released

0.25-2.1ubuntu16.04.5
precise/esm

DNE

trusty

ignored

end of standard support
trusty/esm

DNE

Показывать по

EPSS

Процентиль: 39%
0.00173
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
почти 6 лет назад

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

CVSS3: 6.5
nvd
почти 6 лет назад

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

CVSS3: 6.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 6.5
debian
почти 6 лет назад

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in ...

CVSS3: 6.5
github
больше 3 лет назад

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

EPSS

Процентиль: 39%
0.00173
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3