CVE Database
/

CVE-2017-5333

Back to search

CVE-2017-5333

Published: Nov 4, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) or execute arbitrary code via a crafted executable file.

VendorProductVersions

Debian

icoutils

affected
before 0.31.1

References

RHSA-2017:0837
vendor-advisory
x_refsource_REDHAT
openSUSE-SU-2017:0167
vendor-advisory
x_refsource_SUSE
95678
vdb-entry
x_refsource_BID
DSA-3765
vendor-advisory
x_refsource_DEBIAN
openSUSE-SU-2017:0168
vendor-advisory
x_refsource_SUSE
USN-3178-1
vendor-advisory
x_refsource_UBUNTU
openSUSE-SU-2017:0166
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now