Описание
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 1:5.32-2ubuntu0.3 |
| devel | released | 1:5.37-6 |
| disco | released | 1:5.35-4ubuntu0.1 |
| eoan | released | 1:5.37-5ubuntu0.1 |
| esm-infra-legacy/trusty | released | 1:5.14-2ubuntu3.4+esm1 |
| esm-infra/bionic | released | 1:5.32-2ubuntu0.3 |
| esm-infra/xenial | released | 1:5.25-2ubuntu1.3 |
| precise/esm | not-affected | 5.09-2ubuntu0.8 |
| trusty | ignored | end of standard support |
| trusty/esm | released | 1:5.14-2ubuntu3.4+esm1 |
Показывать по
EPSS
6.8 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).
cdf_read_property_info in cdf.c in file through 5.37 does not restrict ...
EPSS
6.8 Medium
CVSS2
7.8 High
CVSS3