[3.6] chicken: Unsafe pointer dereference due to incorrect pair? check in Scheme "length" procedure (CVE-2017-9334)ID: oval:org.secpod.oval:def:1800060 | Date: (C)2018-03-28 (M)2021-11-09 |
Class: PATCH | Family: unix |
An incorrect "pair?" check in the Scheme "length" procedure results in an unsafe pointer dereference in all CHICKEN Scheme versions prior to 4.13, which allows an attacker to cause a denial of service by passing an improper list to an application that calls "length" on it. Fixed In Version: chicken 4.13 Patch:
Platform: |
Alpine Linux 3.6 |