CVE-2018-19200: Null Pointer Dereference
Published Nov 12, 2018
·Updated
An issue was discovered in uriparser before 0.9.0. UriCommon.c allows attempted operations on NULL input via a uriResetUri function.
Affected Software
2 affected components
Uriparser Project Uriparser<0.9.0
Debian Debian Linux<8.0
Remediation
Event History
Nov 12, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-19200?
CVE-2018-19200 is a vulnerability discovered in uriparser before 0.9.0, which allows attempted operations on NULL input.
2
How does CVE-2018-19200 affect the Uriparser Project Uriparser software?
The uriparser before 0.9.0 software is affected, allowing attempted operations on NULL input via a uriResetUri* function.
3
How does CVE-2018-19200 affect Debian Debian Linux?
Debian Debian Linux before version 8.0 is affected by the uriparser before 0.9.0 vulnerability.
4
What is the severity of CVE-2018-19200?
The severity of CVE-2018-19200 is high with a severity score of 7.5.
5
How can I fix CVE-2018-19200?
To fix CVE-2018-19200, update the uriparser software to version 0.9.0 or later.