Candidate: CVE-2017-12961 PublicDate: 2017-08-18 21:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-12961 https://bugzilla.redhat.com/show_bug.cgi?id=1482436 Description: There is an assertion abort in the function parse_attributes() in data/sys-file-reader.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service. Ubuntu-Description: Notes: ratliff> zesty core dumped, xenial errored out Bugs: Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_pspp: upstream_pspp: released (1.0.1-1) precise/esm_pspp: DNE trusty_pspp: not-affected trusty/esm_pspp: DNE (trusty was not-affected) vivid/ubuntu-core_pspp: DNE xenial_pspp: ignored (end of standard support, was needed) zesty_pspp: ignored (reached end-of-life) artful_pspp: DNE bionic_pspp: not-affected (1.0.1-1) cosmic_pspp: not-affected (1.0.1-1) disco_pspp: not-affected (1.0.1-1) eoan_pspp: not-affected (1.0.1-1) focal_pspp: DNE groovy_pspp: not-affected (1.0.1-1) hirsute_pspp: not-affected (1.0.1-1) impish_pspp: not-affected (1.0.1-1) jammy_pspp: not-affected (1.0.1-1) devel_pspp: not-affected (1.0.1-1)