Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2020-36332

Published: May 21, 2021Last modified: November 8, 2023

Description

A flaw was found in libwebp in versions before 1.0.1. When reading a file libwebp allocates an excessive amount of memory. The highest threat from this vulnerability is to the service availability.

Severity score breakdown

ParameterValue
Base score7.5
Attack VectorNETWORK
Attack complexityLOW
Privileges requiredNONE
User interactionNONE
ScopeUNCHANGED
ConfidentialityNONE
Integrity impactNONE
Availability impactHIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSlibwebpNot affected (1.2.4-r2)
StreamlibwebpNot affected (1.3.1-r0)

References

ON THIS PAGE