Опубликовано: 16 окт. 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.8
Описание
In libass 0.14.0, the ass_outline_construct's call to outline_stroke causes a signed integer overflow.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needed |
| devel | not-affected | 1:0.15.2-1 |
| esm-apps-legacy/xenial | not-affected | code not present |
| esm-apps/bionic | needed | |
| esm-apps/focal | needed | |
| esm-apps/jammy | not-affected | 1:0.15.2-1 |
| esm-apps/noble | not-affected | 1:0.15.2-1 |
| esm-apps/resolute | not-affected | 1:0.15.2-1 |
| esm-apps/xenial | not-affected | code not present |
| esm-infra-legacy/trusty | not-affected | code not present |
Показывать по
10
EPSS
Процентиль: 78%
0.01811
Низкий
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
CVSS3: 8.8
nvd
почти 6 лет назад
In libass 0.14.0, the `ass_outline_construct`'s call to `outline_stroke` causes a signed integer overflow.
CVSS3: 8.8
debian
почти 6 лет назад
In libass 0.14.0, the `ass_outline_construct`'s call to `outline_strok ...
CVSS3: 8.8
github
больше 4 лет назад
In libass 0.14.0, the `ass_outline_construct`'s call to `outline_stroke` causes a signed integer overflow.
EPSS
Процентиль: 78%
0.01811
Низкий
6.8 Medium
CVSS2
8.8 High
CVSS3