CVE-2017-15922 - log back

CVE-2017-15922 created at 25 Sep 2019 19:31:40
Severity
+ Low
Remote
+ Local
Type
+ Denial of service
Description
+ In GNU Libextractor before 1.6, there is an out-of-bounds read in the EXTRACTOR_dvi_extract_method function in plugins/dvi_extractor.c.
References
+ http://lists.gnu.org/archive/html/bug-libextractor/2017-10/msg00008.html
Notes
+ Tested with the reproducer against 1.5, it still causes the crash (the reporter tested with 1.4, but not 1.5).