383
VMScore

CVE-2017-16711

Published: 09/11/2017 Updated: 27/11/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The swf_DefineLosslessBitsTagToImage function in lib/modules/swfbits.c in SWFTools 0.9.2 mishandles an uncompress failure, which allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) because of extractDefinitions in lib/readers/swf.c and fill_line_bitmap in lib/devices/render.c, as demonstrated by swfrender.

Vulnerable Product Search on Vulmon Subscribe to Product

swftools swftools 0.9.2

Vendor Advisories

Debian Bug report logs - #881390 CVE-2017-16711: SWFTools: NULL pointer dereference Package: swftools; Maintainer for swftools is Christian Welzel <gawain@camlannde>; Source for swftools is src:swftools (PTS, buildd, popcon) Reported by: Henri Salo <henri@nervfi> Date: Sat, 11 Nov 2017 09:00:02 UTC Severity: impor ...