CVE-2018-3848
16.04.2018, 16:29
In the ffghbn function in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buffer overflow overwriting arbitrary data. An attacker can deliver an FIT image to trigger this vulnerability and potentially gain code execution.Enginsight
Vendor | Product | Version |
---|---|---|
nasa | cfitsio | 𝑥 < 3.490 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References