Описание
An issue was discovered in SVG++ (aka svgpp) 1.2.3. After calling the gil::get_color function in Generic Image Library in Boost, the return code is used as an address, leading to an Access Violation because of an out-of-bounds read.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needed |
| cosmic | ignored | end of life |
| devel | not-affected | 1.3.0+dfsg1-6 |
| disco | not-affected | 1.2.3+dfsg1-5 |
| eoan | not-affected | 1.2.3+dfsg1-5 |
| esm-apps/bionic | released | 1.2.3+dfsg1-3ubuntu1+esm1 |
| esm-apps/focal | not-affected | 1.2.3+dfsg1-5 |
| esm-apps/jammy | not-affected | 1.2.3+dfsg1-5 |
| esm-infra-legacy/trusty | DNE | |
| focal | not-affected | 1.2.3+dfsg1-5 |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
An issue was discovered in SVG++ (aka svgpp) 1.2.3. After calling the gil::get_color function in Generic Image Library in Boost, the return code is used as an address, leading to an Access Violation because of an out-of-bounds read.
An issue was discovered in SVG++ (aka svgpp) 1.2.3. After calling the ...
An issue was discovered in SVG++ (aka svgpp) 1.2.3. After calling the gil::get_color function in Generic Image Library in Boost, the return code is used as an address, leading to an Access Violation because of an out-of-bounds read.
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3