Description
An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. This is happening because the "len" parameter for memcpy is not checked for size and thus becomes a negative integer in the process, resulting in a failed memcpy. This affects wrestool.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-854-1 | icoutils security update |
Debian DSA |
DSA-3807-1 | icoutils security update |
EUVD |
EUVD-2017-15077 | An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. This is happening because the "len" parameter for memcpy is not checked for size and thus becomes a negative integer in the process, resulting in a failed memcpy. This affects wrestool. |
Ubuntu USN |
USN-3226-1 | icoutils vulnerabilities |
Ubuntu USN |
USN-4695-1 | icoutils vulnerabilities |
References
History
No history.
Subscriptions
Debian
Subscribe
Debian Linux
Subscribe
Icoutils Project
Subscribe
Icoutils
Subscribe
Redhat
Subscribe
Enterprise Linux
Subscribe
Enterprise Linux Desktop
Subscribe
Enterprise Linux Server
Subscribe
Enterprise Linux Server Aus
Subscribe
Enterprise Linux Server Eus
Subscribe
Enterprise Linux Server Tus
Subscribe
Enterprise Linux Workstation
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T15:18:49.549Z
Reserved: 2017-02-16T00:00:00.000Z
Link: CVE-2017-6009
No data.
Status : Deferred
Published: 2017-02-16T11:59:00.223
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-6009
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN