| Vulnerability Name: | CVE-2018-15161 |
| Assigned: | 2018-08-31 |
| Published: | 2018-08-31 |
| Updated: | 2018-10-24 |
| Summary: | ** DISPUTED ** The libesedb_key_append_data function in libesedb_key.c in libesedb through 2018-04-01 allows remote attackers to cause a heap-based buffer over-read via a crafted esedb file. Note: the vendor has disputed this as described in the GitHub issue comments.
|
| CVSS v3 Severity: | 6.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)| Exploitability Metrics: | Attack Vector (AV): Network Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): Required | | Scope: | Scope (S): Unchanged
| | Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): High | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)| Exploitability Metrics: | Attack Vector (AV): Network Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | | Scope: | Scope (S): Unchanged
| | Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): Low |
|
| CVSS v2 Severity: | 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P)| Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Medium Authentication (Au): None | | Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): Partial | 4.3 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P)| Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Medium Athentication (Au): None
| | Impact Metrics: | Confidentiality (C): None Integrity (I): None Availibility (A): Partial |
|
| Vulnerability Type: | CWE-125
|
| References: | Source: MITRE Type: CNA CVE-2018-15161
Source: MISC Type: Exploit, Third Party Advisory https://github.com/libyal/libesedb/issues/43
|
| Vulnerable Configuration: | Configuration 1: cpe:/a:libesedb_project:libesedb:*:*:*:*:*:*:*:* (Version <= 2018-04-01)
Denotes that component is vulnerable |
| Oval Definitions |
|
| BACK |