Oval Definition:oval:com.ubuntu.disco:def:201779610000000
Revision Date:2017-04-19Version:1
Title:CVE-2017-7961 on Ubuntu 19.04 (disco) - low.
Description:** DISPUTED ** The cr_tknzr_parse_rgb function in cr-tknzr.c in libcroco 0.6.11 and 0.6.12 has an "outside the range of representable values of type long" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CSS file. NOTE: third-party analysis reports "This is not a security issue in my view. The conversion surely is truncating the double into a long value, but there is no impact as the value is one of the RGB components."
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7961
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND libcroco package in disco is affected and needs fixing.
  • BACK