logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-36308

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-36308

Description:
** DISPUTED ** disintegration Imaging 1.6.2 allows attackers to cause a panic (because of an integer index out of range during a Grayscale call) via a crafted TIFF file to the scan function of scanner.go. NOTE: it is unclear whether there are common use cases in which this panic could have any security consequence
Last updated date:
09/08/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
09/08/2023
Reference url to background

https://github.com/disintegration/imaging/issues/165

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy