MEDIUM
An issue was discovered in Bitdefender Engines before 7.76662
Published May 24, 2019
5.3
MEDIUMCVSS 3.0
EPSS 0.93%
Description
An issue was discovered in Bitdefender Engines before 7.76662. A vulnerability has been discovered in the iso.xmd parser that results from a lack of proper validation of user-supplied data, which can result in a division-by-zero circumstance. Paired with other vulnerabilities, this can result in denial-of-service. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected products
No data.
- < 7.76662
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (3)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-9797 Advisory
- https://www.bitdefender.com/ x_refsource_MISCVendor Advisory
- https://www.bitdefender.com/support/security-advisories/bitdefender-iso-xmd-iso-parsing-bounds-read-vulnerability/ x_refsource_MISCVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-9797 | Advisory | |
| https://www.bitdefender.com/ | x_refsource_MISCVendor Advisory | |
| https://www.bitdefender.com/support/security-advisories/bitdefender-iso-xmd-iso-parsing-bounds-read-vulnerability/ | x_refsource_MISCVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published May 24, 2019
Updated Aug 5, 2024
Reserved Oct 8, 2018
Link CVE-2018-18058
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2018-9797 Assigner mitre
Published May 24, 2019
Updated Aug 5, 2024
Exploited since n/a
Link EUVD-2018-9797