First published: Thu Jul 15 2021(Updated: )
Division-By-Zero vulnerability in Libvips 8.10.5 in the function vips_eye_point, eye.c#L83, and function vips_mask_point, mask.c#L85.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/vips | <=8.7.4-1+deb10u1 | 8.10.5-2 8.14.1-3+deb12u1 8.15.1-1 8.15.2-1 |
ubuntu/vips | <8.4.5-1ubuntu0.1~ | 8.4.5-1ubuntu0.1~ |
ubuntu/vips | <8.8.3-1 | 8.8.3-1 |
ubuntu/vips | <8.2.2-1ubuntu0.1~ | 8.2.2-1ubuntu0.1~ |
LibVIRT | =8.10.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27847 is a Division-By-Zero vulnerability in Libvips 8.10.5.
The Division-By-Zero vulnerability in Libvips 8.10.5 can be exploited by an attacker to cause a denial of service or potentially execute arbitrary code.
The severity of CVE-2021-27847 is medium with a CVSS score of 6.5.
Libvips 8.10.5 is affected by CVE-2021-27847.
To fix the Division-By-Zero vulnerability in Libvips 8.10.5, it is recommended to update to a version that includes the fix, such as v8.8.0-rc1 or later.