PT-2018-17973 · Dan Bloomberg+2 · Leptonica+2

Published

2018-02-19

·

Updated

2024-12-19

·

CVE-2018-7247

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Leptonica versions prior to 1.75.3
Description An issue was discovered in pixHtmlViewer in prog/htmlviewer.c, where unsanitized input, specifically the rootname, can overflow a buffer. This could potentially lead to arbitrary code execution or other unspecified impacts.
Recommendations For versions prior to 1.75.3, update to version 1.75.3 or later to resolve the issue.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2021-3559
ALT-PU-2022-1147
ALT-PU-2024-16902
CVE-2018-7247
MGASA-2018-0175
OPENSUSE-SU-2024:10914-1
USN-5143-1

Affected Products

Alt Linux
Leptonica
Ubuntu