rpm package
suse/libcdio&distro=SUSE Linux Enterprise Module for Desktop Applications 15
pkg:rpm/suse/libcdio&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2017-18201 | Cri | 9.8 | < 0.94-6.3.1 | 0.94-6.3.1 | Feb 26, 2018 | An issue was discovered in GNU libcdio before 2.0.0. There is a double free in get_cdtext_generic() in lib/driver/_cdio_generic.c. | |
| CVE-2017-18199 | Med | 6.5 | < 0.94-6.3.1 | 0.94-6.3.1 | Feb 24, 2018 | realloc_symlink in rock.c in GNU libcdio before 1.0.0 allows remote attackers to cause a denial of service (NULL Pointer Dereference) via a crafted iso file. |
- affected < 0.94-6.3.1fixed 0.94-6.3.1
An issue was discovered in GNU libcdio before 2.0.0. There is a double free in get_cdtext_generic() in lib/driver/_cdio_generic.c.
- affected < 0.94-6.3.1fixed 0.94-6.3.1
realloc_symlink in rock.c in GNU libcdio before 1.0.0 allows remote attackers to cause a denial of service (NULL Pointer Dereference) via a crafted iso file.