TROYANOSYVIRUS
Voltar para CVEs

CVE-2018-17294

N/A

Descricao

The matchCurrentInput function inside lou_translateString.c of Liblouis prior to 3.7 does not check the input string's length, allowing attackers to cause a denial of service (application crash via out-of-bounds read) by crafting an input file with certain translation dictionaries.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado9/21/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

Produtos afetados

canonical:ubuntu_linuxliblouis:liblouisopensuse:leap

Fraquezas (CWE)

CWE-125

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.