Описание
A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needed |
| devel | not-affected | 1.9.16-1 |
| esm-apps/bionic | released | 1.9.2-1ubuntu0.2+esm1 |
| esm-apps/focal | released | 1.9.7-1ubuntu0.3+esm1 |
| esm-apps/jammy | not-affected | 1.9.13-1 |
| esm-apps/noble | not-affected | 1.9.16-1 |
| esm-apps/xenial | released | 1.8.27-8ubuntu1.1+esm2 |
| esm-infra-legacy/trusty | released | 1.8.27-8ubuntu1+esm3 |
| focal | ignored | end of standard support, was needed |
| hirsute | ignored | end of life |
Показывать по
Ссылки на источники
6.8 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.
A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 ...
A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.
6.8 Medium
CVSS2
7.8 High
CVSS3