PT-2024-18937 · Images · Images

Alessio Della Libera

·

Published

2024-07-10

·

Updated

2024-08-01

·

CVE-2024-21523

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions package images (affected versions not specified)
Description The issue is related to providing unexpected input types to several different functions, which can lead to a process crash due to reaching an assert macro. Specifically, providing certain integer values, such as 0, to the size function can result in a Segmentation fault error, causing the process to crash.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2024-21523
GHSA-VJPV-X8P9-7P85

Affected Products

Images