Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2017-5332
The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, which allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.003
EPSS Ranking
50.5%
CVSS Severity
CVSS v3 Score
7.8
CVSS v2 Score
6.8
References
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00024.html
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00025.html
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00026.html
http://rhn.redhat.com/errata/RHSA-2017-0837.html
http://www.debian.org/security/2017/dsa-3765
http://www.openwall.com/lists/oss-security/2017/01/11/3
http://www.securityfocus.com/bid/95380
http://www.ubuntu.com/usn/USN-3178-1
https://bugzilla.redhat.com/show_bug.cgi?id=1412263
https://git.savannah.gnu.org/cgit/icoutils.git/commit/?id=1aa9f28f7bcbdfff6a84a15ac8d9a87559b1596a
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00024.html
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00025.html
http://lists.opensuse.org/opensuse-security-announce/2017-01/msg00026.html
http://rhn.redhat.com/errata/RHSA-2017-0837.html
http://www.debian.org/security/2017/dsa-3765
http://www.openwall.com/lists/oss-security/2017/01/11/3
http://www.securityfocus.com/bid/95380
http://www.ubuntu.com/usn/USN-3178-1
https://bugzilla.redhat.com/show_bug.cgi?id=1412263
https://git.savannah.gnu.org/cgit/icoutils.git/commit/?id=1aa9f28f7bcbdfff6a84a15ac8d9a87559b1596a
Products affected by CVE-2017-5332
Icoutils Project
»
Icoutils
»
Version:
0.26.0
cpe:2.3:a:icoutils_project:icoutils:0.26.0
Icoutils Project
»
Icoutils
»
Version:
0.26.0-1
cpe:2.3:a:icoutils_project:icoutils:0.26.0-1
Icoutils Project
»
Icoutils
»
Version:
0.27.0
cpe:2.3:a:icoutils_project:icoutils:0.27.0
Icoutils Project
»
Icoutils
»
Version:
0.28.0
cpe:2.3:a:icoutils_project:icoutils:0.28.0
Icoutils Project
»
Icoutils
»
Version:
0.29.0
cpe:2.3:a:icoutils_project:icoutils:0.29.0
Icoutils Project
»
Icoutils
»
Version:
0.29.1
cpe:2.3:a:icoutils_project:icoutils:0.29.1
Icoutils Project
»
Icoutils
»
Version:
0.30.0
cpe:2.3:a:icoutils_project:icoutils:0.30.0
Icoutils Project
»
Icoutils
»
Version:
0.31.0
cpe:2.3:a:icoutils_project:icoutils:0.31.0
Canonical
»
Ubuntu Linux
»
Version:
12.04
cpe:2.3:o:canonical:ubuntu_linux:12.04
Debian
»
Debian Linux
»
Version:
10.0
cpe:2.3:o:debian:debian_linux:10.0
Debian
»
Debian Linux
»
Version:
8.0
cpe:2.3:o:debian:debian_linux:8.0
Debian
»
Debian Linux
»
Version:
9.0
cpe:2.3:o:debian:debian_linux:9.0
Opensuse
»
Leap
»
Version:
42.1
cpe:2.3:o:opensuse:leap:42.1
Opensuse
»
Leap
»
Version:
42.2
cpe:2.3:o:opensuse:leap:42.2
Opensuse
»
Opensuse
»
Version:
13.2
cpe:2.3:o:opensuse:opensuse:13.2
Redhat
»
Enterprise Linux
»
Version:
7.0
cpe:2.3:o:redhat:enterprise_linux:7.0
Redhat
»
Enterprise Linux Desktop
»
Version:
7.0
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0
Redhat
»
Enterprise Linux Server Aus
»
Version:
7.3
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3
Redhat
»
Enterprise Linux Server Aus
»
Version:
7.4
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4
Redhat
»
Enterprise Linux Server Aus
»
Version:
7.6
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6
Redhat
»
Enterprise Linux Server Aus
»
Version:
7.7
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7
Redhat
»
Enterprise Linux Server Eus
»
Version:
7.3
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3
Redhat
»
Enterprise Linux Server Eus
»
Version:
7.4
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4
Redhat
»
Enterprise Linux Server Eus
»
Version:
7.5
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5
Redhat
»
Enterprise Linux Server Eus
»
Version:
7.6
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6
Redhat
»
Enterprise Linux Server Eus
»
Version:
7.7
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.7
Redhat
»
Enterprise Linux Server Tus
»
Version:
7.3
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3
Redhat
»
Enterprise Linux Server Tus
»
Version:
7.6
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6
Redhat
»
Enterprise Linux Server Tus
»
Version:
7.7
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7
Redhat
»
Enterprise Linux Workstation
»
Version:
7.0
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved