The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-811-1 libplist security update
Debian DLA Debian DLA DLA-2168-1 libplist security update
EUVD EUVD EUVD-2017-14315 The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read) via split encoded Apple Property List data.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T14:55:35.757Z

Reserved: 2017-01-09T00:00:00

Link: CVE-2017-5209

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-01-11T16:59:00.377

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-5209

cve-icon Redhat

Severity : Low

Publid Date: 2017-01-12T00:00:00Z

Links: CVE-2017-5209 - Bugzilla

cve-icon OpenCVE Enrichment

No data.