Lucene search

K
osvGoogleOSV:CVE-2018-7998
HistoryMar 09, 2018 - 7:29 p.m.

CVE-2018-7998

2018-03-0919:29:01
Google
osv.dev
6

AI Score

7.9

Confidence

High

EPSS

0.009

Percentile

82.3%

In libvips before 8.6.3, a NULL function pointer dereference vulnerability was found in the vips_region_generate function in region.c, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted image file. This occurs because of a race condition involving a failed delayed load and other worker threads.

AI Score

7.9

Confidence

High

EPSS

0.009

Percentile

82.3%