vulnerability

Ubuntu: USN-5558-1 (CVE-2017-18199): libcdio vulnerabilities

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Feb 24, 2018
Added
Aug 10, 2022
Modified
Aug 18, 2025

Description

realloc_symlink in rock.c in GNU libcdio before 1.0.0 allows remote attackers to cause a denial of service (NULL Pointer Dereference) via a crafted iso file.

Solutions

ubuntu-pro-upgrade-libcdio-cdda1ubuntu-pro-upgrade-libcdio-paranoia1ubuntu-pro-upgrade-libcdio-utilsubuntu-pro-upgrade-libcdio13ubuntu-pro-upgrade-libiso9660-8ubuntu-pro-upgrade-libudf0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.