First published: Wed Feb 28 2018(Updated: )
There is an invalid free in ReadImage in input-bmp.ci that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of service or possibly unspecified other impact.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sam2p Project Sam2p | =0.49.4 | |
Debian Debian Linux | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-7554 is a vulnerability in sam2p 0.49.4 that allows a crafted input to cause a denial of service or other impacts.
The severity of CVE-2018-7554 is critical, with a severity value of 9.8.
CVE-2018-7554 can be exploited by providing a crafted input to the ReadImage function in input-bmp.ci, which leads to a segmentation fault in sam2p 0.49.4.
sam2p version 0.49.4 and Debian Linux version 7.0 are affected by CVE-2018-7554.
Yes, there is a fix available for CVE-2018-7554. Please refer to the provided references for more information.