First published: Tue Sep 05 2017(Updated: )
libgedit.a in GNOME gedit through 3.22.1 allows remote attackers to cause a denial of service (CPU consumption) via a file that begins with many '\0' characters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNOME Text Editor | <=3.22.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14108 is classified as a denial of service vulnerability that can significantly affect CPU consumption.
To mitigate CVE-2017-14108, update GNOME gedit to a version later than 3.22.1, where the vulnerability has been addressed.
The denial of service in CVE-2017-14108 is caused by processing a file that begins with multiple '\0' characters.
CVE-2017-14108 affects GNOME gedit versions up to and including 3.22.1.
CVE-2017-14108 can be exploited by remote attackers who provide specially crafted files to trigger excessive CPU usage.