Heap-based buffer over-read in Exempi - CVE-2018-7730

 

Heap-based buffer over-read in Exempi - CVE-2018-7730

Published: March 14, 2018 / Updated: March 20, 2018


Vulnerability identifier: #VU11078
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-7730
CWE-ID: CWE-126
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local attacker to cause DoS condition on the target system.

The weakness in the PSD_MetaHandler::CacheFileData() function is due to heap-based buffer over-read. A local attacker can submit a specially crafted .xls file, trigger memory corruption and cause the service to crash.

Affected software

Exempi
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Fedora
python-msldap
exempi

How to mitigate CVE-2018-7730

Update to version 2.4.5.

python-msldap - update to 0.3.15-1.fc33
exempi - addressed in versions 2.4.5-1.fc27, 2.4.5-1.fc28

External References

Related Security Bulletins