VYPR

Libmtp

by Libmtp Project

CVEs (2)

  • CVE-2017-9832MedJun 24, 2017
    risk 0.44cvss 6.8epss 0.00

    An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.

  • CVE-2017-9831MedJun 24, 2017
    risk 0.44cvss 6.8epss 0.00

    An integer overflow vulnerability in the ptp_unpack_EOS_CustomFuncEx function of the ptp-pack.c file of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.