CVE-2017-5208
Severity
8.8HIGH
EPSS
1.6%
top 18.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 22
Latest updateMay 14
Description
Integer overflow in the wrestool program in icoutils before 0.31.1 allows remote attackers to cause a denial of service (memory corruption) via a crafted executable, which triggers a denial of service (application crash) or the possibility of execution of arbitrary code.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages6 packages
Also affects: Debian Linux 8.0, Enterprise Linux 7.3, 7.4, 7.6, 7.5
🔴Vulnerability Details
4📋Vendor Advisories
5Debian▶
CVE-2017-5208: icoutils - Integer overflow in the wrestool program in icoutils before 0.31.1 allows remote...↗2017
💬Community
5Bugzilla▶
CVE-2017-14955 check-mk: Mishandles certain errors within the failed-login save feature because of a race condition↗2017-10-03