Vulnerabilities > CVE-2018-17333 - Out-of-bounds Write vulnerability in Libsvg2 Project Libsvg2

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
libsvg2-project
CWE-787
critical

Summary

An issue was discovered in libsvg2 through 2012-10-19. A stack-based buffer overflow in svgStringToLength in svg_types.c allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact because sscanf is misused.

Common Weakness Enumeration (CWE)