PT-2023-35969 · Unknown+1 · Libbrotlidec+1

Publicado

2023-08-24

·

Atualizado

2023-08-24

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
Name of the Vulnerable Software and Affected Versions Exiv2 (affected versions not specified)
Description The issue is related to a crash caused by a container-overflow write in the BrotliDecoderDecompressStream function, which is called by Exiv2::BmffImage::brotliUncompress. This crash occurs in the libbrotlidec.so.1 library.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

OSV-2023-734

Produtos afetados

Exiv2
Libbrotlidec