CVE-2017-7448: Divide by Zero
Published Apr 5, 2017
·Updated
The allocatechannelframebuffer function in uncompressedcomponents.hh in Dropbox Lepton 1.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a malformed JPEG image.
Affected Software
1 affected component
Dropbox Lepton=1.2.1
Remediation
Event History
Apr 5, 2017
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Data Sourced
via NVD·11:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-7448?
CVE-2017-7448 is classified as a denial of service vulnerability.
2
How do I fix CVE-2017-7448?
To fix CVE-2017-7448, update Dropbox Lepton to a version that addresses this vulnerability.
3
What type of attack does CVE-2017-7448 enable?
CVE-2017-7448 allows remote attackers to cause a denial of service through a divide-by-zero error.
4
In which software does CVE-2017-7448 exist?
CVE-2017-7448 exists in Dropbox Lepton version 1.2.1.
5
What can be exploited in CVE-2017-7448?
CVE-2017-7448 can be exploited through the processing of a malformed JPEG image.