CVE-2017-16663: Buffer Overflow
Published Nov 8, 2017
·Updated
In sam2p 0.49.4, there are integer overflows (with resultant heap-based buffer overflows) in input-bmp.ci in the function ReadImage, because "width height" multiplications occur unsafely.
Affected Software
1 affected component
Sam2p Project Sam2p=0.49.4
Event History
Nov 8, 2017
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2017-16663.
2
What is the severity level of CVE-2017-16663?
The severity level of CVE-2017-16663 is medium.
3
What is the affected software for CVE-2017-16663?
The affected software for CVE-2017-16663 is sam2p 0.49.4.
4
What is the CWE ID of CVE-2017-16663?
The CWE ID of CVE-2017-16663 is CWE-119 and CWE-190.
5
How can I fix the CVE-2017-16663 vulnerability?
To fix the CVE-2017-16663 vulnerability, update your sam2p software to version 0.49.5 or higher.