Memory corruption in Exempi - CVE-2017-18233
Published: April 10, 2018
Vulnerability identifier: #VU11631
CSH Severity: Low
CVSS v4: 4.6 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-18233
CWE-ID: CWE-119
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote unauthenticated attacker to cause DoS condition on the target system.
The weakness exists in the Chunk class in the source code file XMPFiles/source/FormatSupport/RIFF.cpp due to integer overflow and infinite loop when handling Extensible Metadata Platform (XMP) data in .avifiles. A remote attacker can trick the victim into accessing a specially crafted .avi file, trigger memory corruption and cause the service to crash.
The weakness exists in the Chunk class in the source code file XMPFiles/source/FormatSupport/RIFF.cpp due to integer overflow and infinite loop when handling Extensible Metadata Platform (XMP) data in .avifiles. A remote attacker can trick the victim into accessing a specially crafted .avi file, trigger memory corruption and cause the service to crash.
Affected software
Exempi
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Fedora
Opensuse
exempi
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Fedora
Opensuse
exempi
How to mitigate CVE-2017-18233
Update to version 2.4.4.
exempi - update to 2.4.5-1.fc27