Опубликовано: 03 нояб. 2021
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.5
Описание
A stack-based buffer under-read in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | not-affected | 1.9.13-1 |
| esm-apps/bionic | released | 1.9.2-1ubuntu0.2+esm1 |
| esm-apps/focal | released | 1.9.7-1ubuntu0.3+esm1 |
| esm-apps/jammy | not-affected | 1.9.13-1 |
| esm-apps/noble | not-affected | 1.9.13-1 |
| esm-apps/xenial | released | 1.8.27-8ubuntu1.1+esm2 |
| esm-infra-legacy/trusty | released | 1.8.27-8ubuntu1+esm3 |
| focal | ignored | end of standard support, was needed |
| hirsute | ignored | end of life |
Показывать по
10
EPSS
Процентиль: 28%
0.00099
Низкий
4.3 Medium
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.5
nvd
больше 4 лет назад
A stack-based buffer under-read in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.
CVSS3: 5.5
debian
больше 4 лет назад
A stack-based buffer under-read in htmldoc before 1.9.12, allows attac ...
CVSS3: 5.5
github
больше 3 лет назад
Buffer overflow vulnerability in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.
EPSS
Процентиль: 28%
0.00099
Низкий
4.3 Medium
CVSS2
5.5 Medium
CVSS3