← Back

CVE-2017-14232

nvd nist
Published: Aug 15, 2019Modified: Nov 21, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

The read_chunk function in flif-dec.cpp in Free Lossless Image Format (FLIF) 0.3 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted flif file.

Affected (2)

1 product
Flif
Jasper
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 0.3
Up to 2.0.16

Related CWEs

References (4)

Timeline

No history available yet.