CVE-2017-7875

9.8CRITICAL

In wallpaper.c in feh before v2.18.3, if a malicious client pretends to be the E17 window manager, it is possible to trigger an out-of-boundary heap write while receiving an IPC message. An integer ov

Veröffentlicht: 4/14/2017Aktualisiert: 4/20/2025

Beschreibung

In wallpaper.c in feh before v2.18.3, if a malicious client pretends to be the E17 window manager, it is possible to trigger an out-of-boundary heap write while receiving an IPC message. An integer overflow leads to a buffer overflow and/or a double free.

KI-AnalyseKI-gestützt

Betroffene Produkte

feh_projectfeh

Referenzen