Debian Libgig vulnerabilities
5 known vulnerabilities affecting debian/libgig.
Total CVEs
5
CISA KEV
0
Public exploits
5
Exploited in wild
0
Severity breakdown
LOW5
Vulnerabilities
Page 1 of 1
CVE-2017-12951P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-5 (bookworm)2017
CVE-2017-12951 [MEDIUM] CVE-2017-12951: libgig - The gig::DimensionRegion::CreateVelocityTable function in gig.cpp in libgig 4.0....
The gig::DimensionRegion::CreateVelocityTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted gig file.
Scope: local
bookworm: resolved (fixed in 4.0.0-5)
bullseye: resolved (fixed in 4.0.0-5)
forky: resolved (fixed in 4.0.0-5)
sid: resolved (fixed in 4.0.0-5
debian
CVE-2017-12950P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-4 (bookworm)2017
CVE-2017-12950 [MEDIUM] CVE-2017-12950: libgig - The gig::Region::Region function in gig.cpp in libgig 4.0.0 allows remote attack...
The gig::Region::Region function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file.
Scope: local
bookworm: resolved (fixed in 4.0.0-4)
bullseye: resolved (fixed in 4.0.0-4)
forky: resolved (fixed in 4.0.0-4)
sid: resolved (fixed in 4.0.0-4)
trixie: resolved (fixed
debian
CVE-2017-12952P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-4 (bookworm)2017
CVE-2017-12952 [MEDIUM] CVE-2017-12952: libgig - The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to c...
The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file.
Scope: local
bookworm: resolved (fixed in 4.0.0-4)
bullseye: resolved (fixed in 4.0.0-4)
forky: resolved (fixed in 4.0.0-4)
sid: resolved (fixed in 4.0.0-4)
trixie: resolved (fixed in 4.0.0
debian
CVE-2017-12953P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-4 (bookworm)2017
CVE-2017-12953 [MEDIUM] CVE-2017-12953: libgig - The gig::Instrument::UpdateRegionKeyTable function in gig.cpp in libgig 4.0.0 al...
The gig::Instrument::UpdateRegionKeyTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory write and application crash) via a crafted gig file.
Scope: local
bookworm: resolved (fixed in 4.0.0-4)
bullseye: resolved (fixed in 4.0.0-4)
forky: resolved (fixed in 4.0.0-4)
sid: resolved (fixed in 4.0.0-4)
trixie: re
debian
CVE-2017-12954P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-5 (bookworm)2017
CVE-2017-12954 [MEDIUM] CVE-2017-12954: libgig - The gig::Region::GetSampleFromWavePool function in gig.cpp in libgig 4.0.0 allow...
The gig::Region::GetSampleFromWavePool function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted gig file.
Scope: local
bookworm: resolved (fixed in 4.0.0-5)
bullseye: resolved (fixed in 4.0.0-5)
forky: resolved (fixed in 4.0.0-5)
sid: resolved (fixed in 4.0.0-5)
trixie: resolv
debian