CVE-2020-1917
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
xbuf_format_converter, used as part of exif_read_data, was appending a terminating null character to the generated string, but was not using its standard append char function. As a result, if the buffer was full, it would result in an out-of-bounds write. This issue affects HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and versions 4.94.0, 4.95.0, 4.96.0, 4.97.0, 4.98.0.
La función xbuf_format_converter, usada como parte de exif_read_data, estaba agregando un carácter null de terminación a la cadena generada, pero no estaba usando su función estándar append char. Como resultado, si el búfer estuviera lleno, resultaría en una escritura fuera de límites. Este problema afecta HHVM versiones anteriores a 4.56.3, todas las versiones entre 4.57.0 y 4.80.1, todas las versiones entre 4.81.0 y 4.93.1 y las versiones 4.94.0, 4.95.0, 4.96.0, 4.97.0 , 4.98.0
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-12-02 CVE Reserved
- 2021-03-10 CVE Published
- 2023-11-24 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-122: Heap-based Buffer Overflow
- CWE-787: Out-of-bounds Write
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://github.com/facebook/hhvm/commit/08193b7f0cd3910256e00d599f0f3eb2519c44ca | 2021-03-17 |
URL | Date | SRC |
---|---|---|
https://hhvm.com/blog/2021/02/25/security-update.html | 2021-03-17 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | < 4.56.3 Search vendor "Facebook" for product "Hhvm" and version " < 4.56.3" | - |
Affected
| ||||||
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | >= 4.57.0 < 4.80.2 Search vendor "Facebook" for product "Hhvm" and version " >= 4.57.0 < 4.80.2" | - |
Affected
| ||||||
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | >= 4.81.0 < 4.93.2 Search vendor "Facebook" for product "Hhvm" and version " >= 4.81.0 < 4.93.2" | - |
Affected
| ||||||
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | 4.94.0 Search vendor "Facebook" for product "Hhvm" and version "4.94.0" | - |
Affected
| ||||||
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | 4.95.0 Search vendor "Facebook" for product "Hhvm" and version "4.95.0" | - |
Affected
| ||||||
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | 4.96.0 Search vendor "Facebook" for product "Hhvm" and version "4.96.0" | - |
Affected
| ||||||
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | 4.97.0 Search vendor "Facebook" for product "Hhvm" and version "4.97.0" | - |
Affected
| ||||||
Facebook Search vendor "Facebook" | Hhvm Search vendor "Facebook" for product "Hhvm" | 4.98.0 Search vendor "Facebook" for product "Hhvm" and version "4.98.0" | - |
Affected
|