CVE-2019-8383: Buffer Overflow
An issue was discovered in AdvanceCOMP through 2.1. An invalid memory address occurs in the function advpngunfilter8 in lib/png.c. It can be triggered by sending a crafted file to a binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact when a victim opens a specially crafted file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-8383?
CVE-2019-8383 is a vulnerability in AdvanceCOMP through 2.1 that allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impacts by sending a crafted file to a binary.
How severe is CVE-2019-8383?
CVE-2019-8383 has a severity rating of 7.8 (high).
Which software is affected by CVE-2019-8383?
The following software versions are affected: Advancecomp 2.1, Debian Linux 9.0, Fedora 30, Red Hat Enterprise Linux 7.0.
How can I fix CVE-2019-8383?
There is no known fix for CVE-2019-8383 at the moment. It is recommended to update to a fixed version of the software when it becomes available.
Where can I find more information about CVE-2019-8383?
You can find more information about CVE-2019-8383 at the following references: [1] [2] [3].