Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2018-10112

EPSS 0.38% · P60
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2018-10112

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
An issue was discovered in GEGL through 0.3.32. The gegl_tile_backend_swap_constructed function in buffer/gegl-tile-backend-swap.c allows remote attackers to cause a denial of service (write access violation) or possibly have unspecified other impact via a malformed PNG file that is mishandled during a call to the babl_format_get_bytes_per_pixel function in babl-format.c in babl 0.1.46.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
GEGL 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
GEGL是一款基于数据流的图像处理框架。该框架为GNU图像操作程序等项目提供浮点处理和无损图像处理功能。 GEGL 0.3.32及之前版本中buffer/gegl-tile-backend-swap.c文件的‘gegl_tile_backend_swap_constructed’函数存在安全漏洞。攻击者可借助畸形的PNG文件利用该漏洞造成拒绝服务(写入访问权限冲突)。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2018-10112

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-10112

登录查看更多情报信息。

Same Patch Batch · n/a · 2018-04-14 · 8 CVEs total

CVE-2018-10111GEGL 安全漏洞
CVE-2018-10113GEGL 安全漏洞
CVE-2018-10114GEGL 安全漏洞
CVE-2018-10100WordPress 安全漏洞
CVE-2018-10101WordPress 安全漏洞
CVE-2018-10102WordPress 跨站脚本漏洞
CVE-2018-10109Monstra CMS 跨站脚本漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2018-10112

No comments yet


Leave a comment