PT-2019-5179 · Djvulibre+4 · Djvulibre+4
Pwd
·
Publicado
2019-10-09
·
Atualizado
2024-06-15
·
CVE-2019-18804
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
DjVuLibre version 3.5.27
Description
The issue is related to a NULL pointer dereference in the
DJVU::filter fv function at IW44EncodeCodec.cpp. This can lead to errors due to pointer dereference issues. Exploitation of this issue may allow a remote attacker to cause a denial of service.Recommendations
For DjVuLibre version 3.5.27, consider applying a patch or fix that addresses the NULL pointer dereference in the
DJVU::filter fv function to prevent potential denial of service attacks.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
NULL Pointer Dereference
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alt Linux
Astra Linux
Djvulibre
Suse
Ubuntu