Описание
cfg_tilde_expand in confuse.c in libConfuse 3.3 has a heap-based buffer over-read.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
libconfuse | fixed | 3.3-3 | package | |
libconfuse | fixed | 3.3-2+deb11u1 | bullseye | package |
Примечания
https://github.com/libconfuse/libconfuse/issues/163
Fixed by: https://github.com/libconfuse/libconfuse/commit/d73777c2c3566fb2647727bb56d9a2295b81669b
EPSS
Процентиль: 30%
0.00106
Низкий
EPSS
Процентиль: 30%
0.00106
Низкий