cbcvebase.

Debian Libgig vulnerabilities

5 known vulnerabilities affecting debian/libgig.

Total CVEs
5
CISA KEV
0
Public exploits
5
Exploited in wild
0
Severity breakdown
LOW5

Vulnerabilities

Page 1 of 1
CVE-2017-12951P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-5 (bookworm)2017
CVE-2017-12951 [MEDIUM] CVE-2017-12951: libgig - The gig::DimensionRegion::CreateVelocityTable function in gig.cpp in libgig 4.0.... The gig::DimensionRegion::CreateVelocityTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted gig file. Scope: local bookworm: resolved (fixed in 4.0.0-5) bullseye: resolved (fixed in 4.0.0-5) forky: resolved (fixed in 4.0.0-5) sid: resolved (fixed in 4.0.0-5
debian
CVE-2017-12950P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-4 (bookworm)2017
CVE-2017-12950 [MEDIUM] CVE-2017-12950: libgig - The gig::Region::Region function in gig.cpp in libgig 4.0.0 allows remote attack... The gig::Region::Region function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file. Scope: local bookworm: resolved (fixed in 4.0.0-4) bullseye: resolved (fixed in 4.0.0-4) forky: resolved (fixed in 4.0.0-4) sid: resolved (fixed in 4.0.0-4) trixie: resolved (fixed
debian
CVE-2017-12952P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-4 (bookworm)2017
CVE-2017-12952 [MEDIUM] CVE-2017-12952: libgig - The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to c... The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file. Scope: local bookworm: resolved (fixed in 4.0.0-4) bullseye: resolved (fixed in 4.0.0-4) forky: resolved (fixed in 4.0.0-4) sid: resolved (fixed in 4.0.0-4) trixie: resolved (fixed in 4.0.0
debian
CVE-2017-12953P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-4 (bookworm)2017
CVE-2017-12953 [MEDIUM] CVE-2017-12953: libgig - The gig::Instrument::UpdateRegionKeyTable function in gig.cpp in libgig 4.0.0 al... The gig::Instrument::UpdateRegionKeyTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory write and application crash) via a crafted gig file. Scope: local bookworm: resolved (fixed in 4.0.0-4) bullseye: resolved (fixed in 4.0.0-4) forky: resolved (fixed in 4.0.0-4) sid: resolved (fixed in 4.0.0-4) trixie: re
debian
CVE-2017-12954P4LOWCVSS 6.5PoCfixed in libgig 4.0.0-5 (bookworm)2017
CVE-2017-12954 [MEDIUM] CVE-2017-12954: libgig - The gig::Region::GetSampleFromWavePool function in gig.cpp in libgig 4.0.0 allow... The gig::Region::GetSampleFromWavePool function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted gig file. Scope: local bookworm: resolved (fixed in 4.0.0-5) bullseye: resolved (fixed in 4.0.0-5) forky: resolved (fixed in 4.0.0-5) sid: resolved (fixed in 4.0.0-5) trixie: resolv
debian