First published: Thu Oct 26 2017(Updated: )
In GNU Libextractor 1.4, there is an out-of-bounds read in the EXTRACTOR_dvi_extract_method function in plugins/dvi_extractor.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/libextractor | 1:1.8-2+deb10u1 1:1.11-2 1:1.11-7 1:1.11-8 | |
libextractor | =1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15922 is classified as a medium severity vulnerability that results in an out-of-bounds read.
To address CVE-2017-15922, upgrade to a patched version of the GNU Libextractor, such as 1.8-2+deb10u1 or later.
CVE-2017-15922 affects GNU Libextractor version 1.4.
CVE-2017-15922 is an out-of-bounds read vulnerability in the EXTRACTOR_dvi_extract_method function.
The maintainers of GNU Libextractor are responsible for addressing CVE-2017-15922 through updates and patches.