5
CVSSv2

CVE-2017-11692

Published: 30/07/2017 Updated: 27/07/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The function "Token& Scanner::peek" in scanner.cpp in yaml-cpp 0.5.3 and previous versions allows remote malicious users to cause a denial of service (assertion failure and application exit) via a '!2' string.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

yaml-cpp project yaml-cpp

Vendor Advisories

Debian Bug report logs - #870326 yaml-cpp: CVE-2017-11692 Package: src:yaml-cpp; Maintainer for src:yaml-cpp is Simon Quigley <tsimonq2@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tue, 1 Aug 2017 04:24:02 UTC Severity: important Tags: security, upstream Found in versions yaml-cpp/051- ...