UBUNTU-CVE-2017-9832
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-9832
Summary:
Details: An integer overflow vulnerability in ptp-pack.c (ptp_unpack_OPL function) of libmtp (version 1.1.12 and below) allows attackers to cause a denial of service (out-of-bounds memory access) or maybe remote code execution by inserting a mobile device into a personal computer through a USB cable.
References: https://ubuntu.com/security/CVE-2017-9832, https://sourceforge.net/p/libmtp/mailman/message/35729062/, https://sourceforge.net/p/libmtp/code/ci/aa7d91a789873a9d86969028e57f888a1241c085/, https://sourceforge.net/p/libmtp/mailman/message/35729062, https://www.cve.org/CVERecord?id=CVE-2017-9832
Affected packages
Package
Name: libmtp
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
