Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2013-2127
HistoryAug 14, 2013 - 3:55 p.m.

CVE-2013-2127

2013-08-1415:55:06
Debian Security Bug Tracker
security-tracker.debian.org
11
buffer overflow
libraw
exposure correction
denial of service
arbitrary code
unix

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.01

Percentile

84.0%

Buffer overflow in the exposure correction code in LibRaw before 0.15.1 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.01

Percentile

84.0%