First published: Wed Jan 11 2023(Updated: )
A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.
Credit: secalert@redhat.com secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
X.org Libxpm | <3.5.15 | |
redhat/libXpm | <3.5.15 | 3.5.15 |
debian/libxpm | 1:3.5.12-1.1+deb11u1 1:3.5.12-1.1+deb12u1 1:3.5.17-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-44617 is a vulnerability found in libXpm that can result in a Denial of Service (DoS) when processing a file with a width of 0 and a very large height.
CVE-2022-44617 has a severity rating of medium.
CVE-2022-44617 can lead to an infinite loop, causing a Denial of Service (DoS) in the application linked to the libXpm library.
To fix CVE-2022-44617, you should update the libXpm library to version 1:3.5.11-1ubuntu0.16.04.1+ or apply the recommended patches for other affected versions.
You can find more information about CVE-2022-44617 on the following references: [1] [2] [3].