Lucene search

K
cveMitreCVE-2023-47249
HistoryNov 05, 2023 - 12:15 a.m.

CVE-2023-47249

2023-11-0500:15:08
CWE-787
mitre
web.nvd.nist.gov
36
cve-2023-47249
out-of-bounds read
international color consortium
demoiccmax
nvd
vulnerability

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

17.0%

In International Color Consortium DemoIccMAX 79ecb74, a CIccXmlArrayType:::ParseText function (for unsigned short) in IccUtilXml.cpp in libIccXML.a has an out-of-bounds read.

Affected configurations

Nvd
Node
colordemoiccmaxMatch2022-06-21
VendorProductVersionCPE
colordemoiccmax2022-06-21cpe:2.3:a:color:demoiccmax:2022-06-21:*:*:*:*:*:*:*

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

17.0%

Related for CVE-2023-47249