Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-43579

Опубликовано: 10 янв. 2022
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8
CVSS3: 7.8

Описание

A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

1.9.16-1
esm-apps/bionic

released

1.9.2-1ubuntu0.2+esm1
esm-apps/focal

released

1.9.7-1ubuntu0.3+esm1
esm-apps/jammy

not-affected

1.9.13-1
esm-apps/noble

not-affected

1.9.16-1
esm-apps/xenial

released

1.8.27-8ubuntu1.1+esm2
esm-infra-legacy/trusty

released

1.8.27-8ubuntu1+esm3
focal

ignored

end of standard support, was needed
hirsute

ignored

end of life

Показывать по

6.8 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
около 4 лет назад

A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.

CVSS3: 7.8
debian
около 4 лет назад

A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 ...

CVSS3: 7.8
github
около 4 лет назад

A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.

6.8 Medium

CVSS2

7.8 High

CVSS3