CVE-2017-12618 - CERT CVE
ID CVE-2017-12618
Sažetak Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to validate the integrity of SDBM database files used by apr_sdbm*() functions, resulting in a possible out of bound read access. A local user with write access to the database can make a program or process using these functions crash, and cause a denial of service.
Reference
CVSS
Base: 1.9
Impact: 2.9
Exploitability:3.4
Pristup
VektorSloženostAutentikacija
LOCAL MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE PARTIAL
CVSS vektor AV:L/AC:M/Au:N/C:N/I:N/A:P
Zadnje važnije ažuriranje 31-10-2018 - 10:29
Objavljeno 24-10-2017 - 01:29