cbcvebase.
CVE-2017-13742
published 2017-08-29

CVE-2017-13742: There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function includeFile() in compileTranslationTable.c, that will lead to a remote…

PriorityP433medium6.5CVSS 3.0
AVNACLPRNUIRSUCNINAH
EPSS
1.85%
76.5th percentile
There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function includeFile() in compileTranslationTable.c, that will lead to a remote denial of service attack.

Affected

8 ranges
VendorProductVersion rangeFixed in
debianliblouis< liblouis 3.3.0-1 (bookworm)liblouis 3.3.0-1 (bookworm)
liblouisliblouis
liblouisliblouis>= 0 < 3.3.0-13.3.0-1
liblouisliblouis>= 0 < 3.3.0-13.3.0-1
liblouisliblouis>= 0 < 3.3.0-13.3.0-1
liblouisliblouis>= 0 < 3.3.0-13.3.0-1
liblouisliblouis>= 0 < 2.5.3-2ubuntu1.12.5.3-2ubuntu1.1
liblouisliblouis>= 0 < 2.6.4-2ubuntu0.12.6.4-2ubuntu0.1

CVSS provenance

nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian6.5LOW
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.