Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-26061

Опубликовано: 22 авг. 2022
Источник: ubuntu
Приоритет: medium
CVSS3: 7.8

Описание

A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

not-affected

1.10.10
esm-apps-legacy/xenial

needs-triage

esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/noble

not-affected

1.10.10
esm-apps/resolute

not-affected

1.10.10
esm-apps/xenial

ignored

end of ESM support, was needs-triage
esm-infra-legacy/trusty

needs-triage

Показывать по

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
redhat
почти 4 года назад

A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 7.8
nvd
почти 4 года назад

A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 7.8
debian
почти 4 года назад

A heap-based buffer overflow vulnerability exists in the gif2h5 functi ...

CVSS3: 7.8
github
почти 4 года назад

A heap-based buffer overflow vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.4
fstec
почти 4 года назад

Уязвимость функции ReadGifHeader() библиотеки HDF5 libhdf5, позволяющая нарушителю выполнить произвольный код в целевой системе

7.8 High

CVSS3