Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-46049

Опубликовано: 27 мар. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.3

Описание

LLVM 15.0.0 has a NULL pointer dereference in the parseOneMetadata() function via a crafted pdflatex.fmt file (or perhaps a crafted .o file) to llvm-lto. NOTE: this is disputed because the relationship between pdflatex.fmt and any LLVM language front end is not explained, and because a crash of the llvm-lto application should be categorized as a usability problem.

РелизСтатусПримечание
devel

DNE

esm-infra/bionic

not-affected

esm-infra/focal

not-affected

focal

not-affected

jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

not-affected

esm-infra/focal

not-affected

focal

not-affected

jammy

not-affected

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

not-affected

esm-infra/focal

not-affected

focal

not-affected

jammy

not-affected

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

esm-infra/focal

DNE

esm-infra/xenial

not-affected

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

trusty/esm

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

esm-apps/xenial

not-affected

esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

esm-infra/focal

DNE

esm-infra/xenial

not-affected

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

trusty/esm

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

esm-infra-legacy/trusty

not-affected

esm-infra/bionic

not-affected

esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

trusty/esm

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

esm-infra/focal

DNE

esm-infra/xenial

not-affected

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

esm-infra/focal

DNE

esm-infra/xenial

not-affected

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

not-affected

esm-infra/bionic

not-affected

esm-infra/xenial

not-affected

focal

not-affected

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

not-affected

esm-infra/bionic

not-affected

focal

not-affected

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/focal

not-affected

esm-apps/xenial

not-affected

esm-infra/bionic

not-affected

focal

not-affected

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/bionic

not-affected

esm-infra/focal

not-affected

focal

not-affected

jammy

DNE

mantic

DNE

noble

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 41%
0.00191
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

LLVM 15.0.0 has a NULL pointer dereference in the parseOneMetadata() function via a crafted pdflatex.fmt file (or perhaps a crafted .o file) to llvm-lto. NOTE: this is disputed because the relationship between pdflatex.fmt and any LLVM language front end is not explained, and because a crash of the llvm-lto application should be categorized as a usability problem.

CVSS3: 5.3
debian
почти 2 года назад

LLVM 15.0.0 has a NULL pointer dereference in the parseOneMetadata() f ...

CVSS3: 5.3
github
почти 2 года назад

LLVM 15.0.0 has a NULL pointer dereference in the parseOneMetadata() function via a crafted pdflatex.fmt file (or perhaps a crafted .o file) to llvm-lto. NOTE: this is disputed because the relationship between pdflatex.fmt and any LLVM language front end is not explained, and because a crash of the llvm-lto application should be categorized as a usability problem.

EPSS

Процентиль: 41%
0.00191
Низкий

5.3 Medium

CVSS3

Уязвимость CVE-2023-46049