VDB
CVE-2022-0534
CVE-2022-0534
PUBLISHED
CVSS 5.5 MEDIUM
A vulnerability was found in htmldoc version 1.9.15 where the stack out-of-bounds read takes place in gif_get_code() and occurs when opening a malicious GIF file, which can result in a crash (segmentation fault).
EPSS 0.94% · 58.1th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
0.94%
58.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| debian | debian_linux | 9.0 |
| n/a | htmldoc | htmldoc 1.9.15 |
| htmldoc_project | htmldoc | 1.9.15 |
Timeline
- Feb 9, 2022 CVE Published
- Feb 10, 2022 EPSS Score
- Feb 10, 2022 PoC Published
- Apr 4, 2022 EPSS Score
- May 26, 2022 EPSS Score
- Jul 19, 2022 EPSS Score
- Sep 9, 2022 EPSS Score
- Nov 1, 2022 EPSS Score
- Dec 24, 2022 EPSS Score
- Feb 14, 2023 EPSS Score
- Apr 8, 2023 EPSS Score
- May 31, 2023 EPSS Score