Description
All versions of the package images are vulnerable to Denial of Service (DoS) due to providing unexpected input types to several different functions. This makes it possible to reach an assert macro, leading to a process crash.
**Note:**
By providing some specific integer values (like 0) to the size function, it is possible to obtain a Segmentation fault error, leading to the process crash.
**Note:**
By providing some specific integer values (like 0) to the size function, it is possible to obtain a Segmentation fault error, leading to the process crash.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2424 | All versions of the package images are vulnerable to Denial of Service (DoS) due to providing unexpected input types to several different functions. This makes it possible to reach an assert macro, leading to a process crash. **Note:** By providing some specific integer values (like 0) to the size function, it is possible to obtain a Segmentation fault error, leading to the process crash. |
Github GHSA |
GHSA-vjpv-x8p9-7p85 | images vulnerable to Denial of Service |
References
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-08-01T22:27:34.807Z
Reserved: 2023-12-22T12:33:20.121Z
Link: CVE-2024-21523
Updated: 2024-08-01T22:27:34.807Z
Status : Awaiting Analysis
Published: 2024-07-10T05:15:11.153
Modified: 2024-11-21T08:54:36.877
Link: CVE-2024-21523
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA