Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-0996

Опубликовано: 24 фев. 2023
Источник: ubuntu
Приоритет: medium
CVSS3: 7.8

Описание

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

РелизСтатусПримечание
bionic

not-affected

code not present
devel

not-affected

1.17.6-1ubuntu4
esm-apps/bionic

not-affected

code not present
esm-apps/focal

released

1.6.1-1ubuntu0.1~esm1
esm-apps/jammy

released

1.12.0-2ubuntu0.1~esm1
focal

ignored

end of standard support, was needed
jammy

needed

kinetic

not-affected

code not present
lunar

ignored

end of life, was needs-triage
mantic

not-affected

1.16.2-2ubuntu1

Показывать по

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
почти 3 года назад

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

CVSS3: 7.8
debian
почти 3 года назад

There is a vulnerability in the strided image data parsing code in the ...

suse-cvrf
больше 2 лет назад

Security update for libheif

CVSS3: 7.8
redos
больше 2 лет назад

Уязвимость libheif

CVSS3: 7.8
github
почти 3 года назад

There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker could exploit this through a crafted image file to cause a buffer overflow in linear memory during a memcpy call.

7.8 High

CVSS3