Vulnerabilities > CVE-2017-12952 - NULL Pointer Dereference vulnerability in Libgig0 Libgig 4.0.0

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
libgig0
CWE-476
exploit available

Summary

The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file.

Vulnerable Configurations

Part Description Count
Application
Libgig0
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionlibgig 4.0.0 (LinuxSampler) - Multiple Vulnerabilities. CVE-2017-12950,CVE-2017-12951,CVE-2017-12952,CVE-2017-12953,CVE-2017-12954. Dos exploit for Linux pla...
fileexploits/linux/dos/42546.txt
idEDB-ID:42546
last seen2017-08-24
modified2017-08-23
platformlinux
port
published2017-08-23
reporterExploit-DB
sourcehttps://www.exploit-db.com/download/42546/
titlelibgig 4.0.0 (LinuxSampler) - Multiple Vulnerabilities
typedos