Search CVE reports


Toggle filters

1 – 7 of 7 results


CVE-2017-6011

Medium priority

Some fixes available 3 of 4

An issue was discovered in icoutils 0.31.1. An out-of-bounds read leading to a buffer overflow was observed in the "simple_vec" function in the "extract.c" source file. This affects icotool.

1 affected package

icoutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icoutils Not affected Not affected
Show less packages

CVE-2017-6010

Medium priority

Some fixes available 3 of 4

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "extract_icons" function in the "extract.c" source file. This issue can be triggered by processing a corrupted ico file and will result in an icotool crash.

1 affected package

icoutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icoutils Not affected Not affected
Show less packages

CVE-2017-6009

Medium priority

Some fixes available 3 of 4

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. This is happening because the "len" parameter for memcpy is not checked for size...

1 affected package

icoutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icoutils Not affected Not affected
Show less packages

CVE-2017-5333

Medium priority

Some fixes available 3 of 4

Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) or execute arbitrary code via a crafted executable file.

1 affected package

icoutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icoutils Not affected Not affected
Show less packages

CVE-2017-5332

Medium priority

Some fixes available 3 of 4

The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, which allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted...

1 affected package

icoutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icoutils Not affected Not affected
Show less packages

CVE-2017-5331

Medium priority

Some fixes available 3 of 4

Integer overflow in the check_offset function in b/wrestool/fileread.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.

1 affected package

icoutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icoutils Not affected Not affected
Show less packages

CVE-2017-5208

Medium priority

Some fixes available 3 of 4

Integer overflow in the wrestool program in icoutils before 0.31.1 allows remote attackers to cause a denial of service (memory corruption) via a crafted executable, which triggers a denial of service (application crash) or the...

1 affected package

icoutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icoutils Not affected Not affected
Show less packages