CVE-2018-20546

Name
CVE-2018-20546
Description
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for the default bpp case.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Exploit https://bugzilla.redhat.com/show_bug.cgi?id=1652622
Mailing List https://lists.debian.org/debian-lts-announce/2019/01/msg00007.html
Third Party Advisory https://usn.ubuntu.com/3860-2/
Third Party Advisory https://usn.ubuntu.com/3860-1/
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00033.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:libcaca_project:libcaca:0.99:beta19:*:*:*:*:*:* libcaca == None == 0.99

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
libcaca edge-community 0.99_beta19-r3 None fixed
libcaca 3.22-community 0.99_beta19-r3 None fixed
libcaca 3.21-community 0.99_beta19-r3 None fixed
libcaca 3.20-community 0.99_beta19-r3 None fixed
libcaca 3.19-community 0.99_beta19-r3 None fixed
libcaca 3.18-community 0.99_beta19-r3 None fixed
libcaca 3.17-community 0.99_beta19-r3 None fixed