CVE-2015-5297

Description

An integer overflow issue has been reported in the general_composite_rect() function in pixman prior to version 0.32.8. An attacker could exploit this issue to cause an application using pixman to crash or, potentially, execute arbitrary code.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.387

Associated Vulnerability

VulnerabilityOS Platform
pixel-manipulation library for X and cairo (USN-3843-1) libpixman-1-0_0.30.2-2ubuntu1.2_i386.debLinux
pixel-manipulation library for X and cairo (USN-3843-1) libpixman-1-0_0.30.2-2ubuntu1.2_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234