CVE-2017-2579: High severity netpbm vulnerability
Published Jul 27, 2018
·Updated
An out-of-bounds read vulnerability was found in netpbm before 10.61. The expandCodeOntoStack() function has an insufficient code value check, so that a maliciously crafted file could cause the application to crash or possibly allows code execution.
Affected Software
1 affected component
Netpbm Project Netpbm=10.61.00
Event History
Jul 27, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-2579?
CVE-2017-2579 is considered a high-severity vulnerability due to potential code execution risks.
2
How do I fix CVE-2017-2579?
To fix CVE-2017-2579, upgrade to Netpbm version 10.61.00 or later.
3
What type of vulnerability is CVE-2017-2579?
CVE-2017-2579 is an out-of-bounds read vulnerability affecting the expandCodeOntoStack() function.
4
What could be the consequences of exploiting CVE-2017-2579?
Exploiting CVE-2017-2579 could cause application crashes or potentially allow code execution.
5
Which software versions are affected by CVE-2017-2579?
CVE-2017-2579 affects Netpbm versions prior to 10.61.00.