An out-of-bounds write vulnerability was found in netpbm before 10.61. A maliciously crafted file could cause the application to crash or possibly allow code execution.
CVSS Details
- CVSS 3.1 Base Score: 4.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade netpbm-free | Jul 30, 2024 | Jul 27, 2018 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jul 27, 2018 |
| Suse | — | Upgrade libnetpbm10Upgrade libnetpbm11Upgrade libnetpbm10-32bitUpgrade libnetpbm-develUpgrade libnetpbm-devel-32bitUpgrade netpbmUpgrade libnetpbm10-x86Upgrade libnetpbm11-32bit | Jun 16, 2017 | Jun 15, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub