CVE-2017-6419

HIGH7.8EPSS 2.3%
發布日:2017/8/7修改日:2025/11/19
也稱為:ALPINE-CVE-2017-6419DEBIAN-CVE-2017-6419

描述

mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.

受影響套件(4)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH7.8CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

參考連結(2)