CVE Database
/

CVE-2018-10767

Back to search

CVE-2018-10767

Published: May 6, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

There is a stack-based buffer over-read in calling GLib in the function gxps_images_guess_content_type of gxps-images.c in libgxps through 0.3.0 because it does not reject negative return values from a g_input_stream_read call. A crafted input will lead to a remote denial of service attack.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2018:3505
vendor-advisory
x_refsource_REDHAT
RHSA-2018:3140
vendor-advisory
x_refsource_REDHAT
RHBA-2019:0327
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now