CVE-2014-8147

Published: 05/25/2015 22:59:01
The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for Unicode (ICU) before 55.1 uses an integer data type that is inconsistent with a header file, which allows remote attackers to cause a denial of service (incorrect malloc followed by invalid free) or possibly execute arbitrary code via crafted text.
HIGH
CVSS v2: 7.5

Status

DocFilters Release Package State Justification Comment
25.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
24.4 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
24.4.0 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
24.3 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
24.2.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
24.2 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
24.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
23.3 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
23.2.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
23.2 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
23.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
22.4 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
22.3 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
22.2 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
22.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
21.11.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
21.11 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
21.8.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
21.8 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
21.5.1 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
21.5.0 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
21.2.0 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.20 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.19.3667 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.18.3599 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.17 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.16.3445 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.15.3368 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.14.3263 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.13.3179 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.12.3054 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.11.3040 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.11.2990 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.10.2934 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.9.2878 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.
11.4.8.2822 international_components_for_unicode (58.1) Not Affected Code Not Present 58.1 does not match CVE configuration.

Severity score breakdown

References