Record summary

CVE-2017-13323 has a selected CVSS score of 8.4 (high).

Description

In String16 of String16.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Nov 29, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Default status: unaffected, unknown

CVE List6affected
6.0.1affected
7affected
7.1.1affected
7.1.2affected
8affected
8.1affected
Before 2018-05-05affected

Default status: unknown

CVE ListBefore 2018-05-05affected

References

2