CVE-2017-6303: Integer Overflow
Published Feb 24, 2017
·Updated
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "6 of 9. Invalid Write and Integer Overflow."
Affected Software
3 affected components
Ytnef Project Ytnef<=1.9
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Event History
Feb 24, 2017
CVE Published
via MITRE·04:23 AM
Data Sourced
via MITRE·04:23 AM
Description
Data Sourced
via NVD·04:59 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-6303?
CVE-2017-6303 has been rated as a medium severity vulnerability due to the potential for integer overflow and invalid write issues.
2
How do I fix CVE-2017-6303?
To fix CVE-2017-6303, upgrade ytnef to version 1.9.1 or later.
3
What software is affected by CVE-2017-6303?
CVE-2017-6303 affects ytnef versions prior to 1.9.1 and Debian Linux versions 8.0 and 9.0.
4
What types of vulnerabilities does CVE-2017-6303 involve?
CVE-2017-6303 involves an integer overflow leading to invalid write vulnerabilities.
5
Is CVE-2017-6303 a remote code execution vulnerability?
CVE-2017-6303 does not directly describe remote code execution but may lead to security risks in specific contexts.