CVE-2018-11576: Critical severity miniupnp vulnerability
Published May 31, 2018
·Updated
ngiflib.c in MiniUPnP ngiflib 0.4 has a heap-based buffer over-read in GifIndexToTrueColor.
Affected Software
1 affected component
Miniupnp Project Ngiflib=0.4
Event History
May 31, 2018
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-11576?
CVE-2018-11576 is classified as a moderate severity vulnerability due to its potential for exploitation in specific scenarios.
2
How do I fix CVE-2018-11576?
To resolve CVE-2018-11576, upgrade to a later version of MiniUPnP ngiflib that addresses this buffer over-read issue.
3
What type of vulnerability is CVE-2018-11576?
CVE-2018-11576 is a heap-based buffer over-read vulnerability found in the ngiflib library.
4
Which software versions are affected by CVE-2018-11576?
CVE-2018-11576 specifically impacts MiniUPnP ngiflib version 0.4.
5
Can CVE-2018-11576 lead to data leaks?
Yes, CVE-2018-11576 can potentially lead to information disclosure due to the nature of the buffer over-read.