CVE-2016-5823: Use After Free
Published Jan 27, 2017
·Updated
The icalpropertynewclone function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (use-after-free) via a crafted ics file.
Affected Software
2 affected components
Libical Project Libical=0.47
Libical Project Libical=1.0
Event History
Jan 27, 2017
CVE Published
via MITRE·10:01 PM
Data Sourced
via MITRE·10:01 PM
Description
Data Sourced
via NVD·10:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-5823?
CVE-2016-5823 is classified as a denial of service vulnerability with a use-after-free condition.
2
How do I fix CVE-2016-5823?
To fix CVE-2016-5823, update libical to version 1.0 or later, which addresses the vulnerability.
3
What types of attacks can exploit CVE-2016-5823?
CVE-2016-5823 can be exploited by remote attackers through crafted ICS files.
4
What software versions are affected by CVE-2016-5823?
CVE-2016-5823 affects libical versions 0.47 and 1.0.
5
What is the impact of exploiting CVE-2016-5823?
Exploiting CVE-2016-5823 can lead to a denial of service situation, causing applications to crash.