Do your applications use this vulnerable package?
Test your applications
Overview
Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors.
References
CVSS Score
3.3
low severity
-
Attack VectorLocal
-
Attack ComplexityLow
-
Privileges RequiredLow
-
User InteractionNone
-
ScopeUnchanged
-
ConfidentialityNone
-
IntegrityNone
-
AvailabilityLow
- CVE
- CVE-2016-9085
- CWE
- CWE-190
- Snyk ID
- SNYK-DEBIAN10-LIBWEBP-277882
- Disclosed
- 03 Feb, 2017
- Published
- 03 Feb, 2017