ALT-PU-2017-1647-1
Closed vulnerabilities
Published: 2017-03-16
BDU:2018-00010
Уязвимость функции ptp_unpack_OPL (ptp-pack.c) библиотеки libmtp, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
Severity: MEDIUM (6.8)
Vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References:
Published: 2017-06-24
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2017-9832
An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.
Severity: MEDIUM (6.8)
Vector: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References: