Vulnerability Details CVE-2017-2579
An out-of-bounds read vulnerability was found in netpbm before 10.61. The expandCodeOntoStack() function has an insufficient code value check, so that a maliciously crafted file could cause the application to crash or possibly allows code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.4%
CVSS Severity
CVSS v3 Score 3.3
CVSS v2 Score 6.8
Products affected by CVE-2017-2579
-
cpe:2.3:a:netpbm_project:netpbm:10.61.00