Description


All versions of the package images are vulnerable to Denial of Service (DoS) due to providing unexpected input types to several different functions. This makes it possible to reach an assert macro, leading to a process crash. **Note:** By providing some specific integer values (like 0) to the size function, it is possible to obtain a Segmentation fault error, leading to the process crash.

Related CPE's


Could not find any relations

Weaknesses



CWE-400

134c704f-9b21-4f2e-91b3-4a467353bcc0

Secondary

CWE-241

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

7.5 · High

Information


Source identifier

[email protected]

Vulnerability status

Awaiting analysis

Published

2024-07-10T03:15:11.153Z

1 year ago

Last modified

2024-11-21T07:54:36.877Z

1 year ago