TROYANOSYVIRUS
Volver a CVEs

CVE-2018-17294

N/A

Descripcion

The matchCurrentInput function inside lou_translateString.c of Liblouis prior to 3.7 does not check the input string's length, allowing attackers to cause a denial of service (application crash via out-of-bounds read) by crafting an input file with certain translation dictionaries.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado9/21/2018
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0

Productos afectados

canonical:ubuntu_linuxliblouis:liblouisopensuse:leap

Debilidades (CWE)

CWE-125

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.