PT-2018-10100 · Bibutils · Bibutils

Published

2018-05-07

·

Updated

2018-06-13

·

CVE-2018-10774

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions bibutils versions prior to 6.2
Description The issue concerns a read access violation in the isiin keyword function, located in the isiin.c file within the libbibutils.a library of bibutils. This can be exploited by remote attackers to cause a denial of service, resulting in an application crash, as demonstrated by the isi2xml tool.
Recommendations For versions prior to 6.2, update to version 6.2 or later to resolve the issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-10774

Affected Products

Bibutils