CVE-2020-15570: Medium severity whoopsie vulnerability
Published Jul 6, 2020
·Updated
Last updated 24 July 2024
Other sources
The parsereport() function in whoopsie.c in Whoopsie through 0.2.69 mishandles memory allocation failures, which allows an attacker to cause a denial of service via a malformed crash file.
Affected Software
1 affected component
Whoopsie Project Whoopsie<=0.2.69
Event History
Jul 6, 2020
CVE Published
via MITRE·01:59 PM
Data Sourced
via MITRE·01:59 PM
Description
Jan 11, 2024
Data Sourced
via Launchpad·11:43 PM
Description
Data Sourced
via Debian·11:43 PM
DescriptionAffected Software
Sep 13, 2024
Data Sourced
via Ubuntu·12:00 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-15570.
2
What is the severity of CVE-2020-15570?
The severity of CVE-2020-15570 is medium with a severity score of 5.5.
3
How does the parse_report() function in Whoopsie through 0.2.69 mishandle memory allocation?
The parse_report() function in Whoopsie through 0.2.69 mishandles memory allocation failures, which can lead to a denial of service.
4
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability by causing a denial of service through a malformed crash file.
5
Are there any available remedies for this vulnerability?
Yes, there are available remedies for this vulnerability depending on the affected software version.