5.5
CVSSv3

CVE-2019-13032

Published: 28/06/2019 Updated: 15/07/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

An issue exists in FlightCrew v0.9.2 and previous versions. A NULL pointer dereference occurs in GetRelativePathToNcx() or GetRelativePathsToXhtmlDocuments() when a NULL pointer is passed to xc::XMLUri::isValidURI(). This affects third-party software (not Sigil) that uses FlightCrew as a library.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

flightcrew project flightcrew

Vendor Advisories

Several security issues were fixed in FlightCrew ...
Debian Bug report logs - #931246 flightcrew: CVE-2019-13032 Package: src:flightcrew; Maintainer for src:flightcrew is Mattia Rizzolo <mattia@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 29 Jun 2019 08:33:02 UTC Severity: important Tags: security, upstream Found in versions flightcrew ...