CVE-2017-5731

Description

Bounds checking in Tianocompress before November 7, 2017 may allow an authenticated user to potentially enable an escalation of privilege via local access.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.119

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities are fixed in macOS Mojave 10.14.6Mac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.6 Combo UpdateMac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.5 Combo UpdateMac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.5Mac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.4Mac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.4 Combo UpdateMac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.3Mac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.3 Combo UpdateMac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.2Mac
Multiple vulnerabilities are fixed in macOS Mojave 10.14.1Mac
SUSE-SU-2018:4194-1(SUSE Linux Enterprise Desktop 12-SP4 ) qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.5.1.noarch.rpmLinux
SUSE-SU-2018:4194-1(SUSE Linux Enterprise Server 12-SP4 ) ovmf-2017+git1510945757.b2662641d5-3.5.1.x86_64.rpmLinux
SUSE-SU-2018:4194-1(SUSE Linux Enterprise Server 12-SP4 ) ovmf-tools-2017+git1510945757.b2662641d5-3.5.1.x86_64.rpmLinux
SUSE-SU-2018:4207-1(SUSE Linux Enterprise Server 12-SP3 ) ovmf-2017+git1492060560.b6d11d7c46-4.17.1.x86_64.rpmLinux
SUSE-SU-2018:4207-1(SUSE Linux Enterprise Server 12-SP3 ) ovmf-tools-2017+git1492060560.b6d11d7c46-4.17.1.x86_64.rpmLinux
SUSE-SU-2018:4207-1(SUSE Linux Enterprise Server 12-SP3 ) qemu-ovmf-x86_64-2017+git1492060560.b6d11d7c46-4.17.1.noarch.rpmLinux
(RHSA-2019:2125) ovmf security and enhancement update OVMF-20180508-6.gitee3198e672e2.el7.noarch.rpmLinux
(CESA-2019:2125) ovmf security and enhancement update OVMF-20180508-6.gitee3198e672e2.el7.noarch.rpmLinux
OVMF update (ELSA-2019-2125) OVMF-20180508-6.gitee3198e672e2.el7.noarch.rpmLinux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-602004macOS Mojave 10.14.6
PATCH-602005macOS Mojave 10.14.6 Combo Update
PATCH-602005macOS Mojave 10.14.6 Combo Update
PATCH-602004macOS Mojave 10.14.6
PATCH-602004macOS Mojave 10.14.6
PATCH-602005macOS Mojave 10.14.6 Combo Update
PATCH-602004macOS Mojave 10.14.6
PATCH-602005macOS Mojave 10.14.6 Combo Update
PATCH-602004macOS Mojave 10.14.6
PATCH-602004macOS Mojave 10.14.6

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234