CVE-2017-14631: Buffer Overflow
Published Sep 21, 2017
·Updated
In sam2p 0.49.3, the pcxLoadRaster function in inpcx.cpp has an integer signedness error leading to a heap-based buffer overflow.
Affected Software
1 affected component
Sam2p Project Sam2p=0.49.3
Event History
Sep 21, 2017
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14631?
CVE-2017-14631 is classified as a high severity vulnerability due to the potential for a heap-based buffer overflow.
2
How do I fix CVE-2017-14631?
To fix CVE-2017-14631, update to a version of sam2p later than 0.49.3 that contains the necessary patches.
3
What causes CVE-2017-14631?
CVE-2017-14631 is caused by an integer signedness error in the pcxLoadRaster function leading to a heap-based buffer overflow.
4
Which versions of sam2p are affected by CVE-2017-14631?
CVE-2017-14631 specifically affects sam2p version 0.49.3.
5
What impact can CVE-2017-14631 have on my system?
Exploitation of CVE-2017-14631 could allow an attacker to execute arbitrary code or crash the application, compromising system integrity.