24 lines
857 B
JSON
Raw Normal View History

{
"id": "CVE-2023-36308",
"sourceIdentifier": "cve@mitre.org",
"published": "2023-09-05T04:15:08.703",
"lastModified": "2023-09-05T06:50:39.603",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "** DISPUTED ** disintegration Imaging 1.6.2 allows attackers to cause a panic (because of an integer index out of range during a Grayscale call) via a crafted TIFF file to the scan function of scanner.go. NOTE: it is unclear whether there are common use cases in which this panic could have any security consequence"
}
],
"metrics": {},
"references": [
{
"url": "https://github.com/disintegration/imaging/issues/165",
"source": "cve@mitre.org"
},
{
"url": "https://github.com/disintegration/imaging/releases/tag/v1.6.2",
"source": "cve@mitre.org"
}
]
}