Описание
im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c in libvips before 8.8.2 has an uninitialized variable which may cause the leakage of remote server path or stack address.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | not-affected | |
| esm-apps/bionic | released | 8.4.5-1ubuntu0.1~esm1 |
| esm-apps/focal | not-affected | 8.9.1-2 |
| esm-apps/jammy | not-affected | |
| esm-apps/xenial | released | 8.2.2-1ubuntu0.1~esm1 |
| esm-infra-legacy/trusty | DNE | |
| focal | not-affected | 8.9.1-2 |
| groovy | not-affected | |
| hirsute | not-affected |
Показывать по
Ссылки на источники
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c in libvips before 8.8.2 has an uninitialized variable which may cause the leakage of remote server path or stack address.
im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c in libvips befo ...
im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c in libvips before 8.8.2 has an uninitialized variable which may cause the leakage of remote server path or stack address.
5 Medium
CVSS2
5.3 Medium
CVSS3