Vulnerabilities > CVE-2017-8891 - DEPRECATED: Use of Uninitialized Resource vulnerability in Dropbox Lepton 1.2.1
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
Dropbox Lepton 1.2.1 allows DoS (SEGV and application crash) via a malformed lepton file because the code does not ensure setup of a correct number of threads.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |