9.8 CRITICAL
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
by @fricklerhandwerk Activity log
- Created automatic suggestion
-
@fricklerhandwerk
deleted
maintainer.delete
6 maintainers
- @sikmir
- @ehmry
- @imincik
- @autra
- @willcohen
- @nh2
-
@fricklerhandwerk
added
maintainer.add
2 maintainers
- @fricklerhandwerk
- @florentc
- @fricklerhandwerk ignored package shapelib
A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and …
A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attacker to cause a denial of service or have other unspecified impact via control over malloc.
References
Affected products
- ==shapelib 1.5.0 and older releases
Package maintainers
Additional maintainers
-
@fricklerhandwerk Valentin Gagarin <valentin@fricklerhandwerk.de>
-
@florentc Florent Ch.