[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.4] libbsd: Heap buffer overflow in fgetwln function (CVE-2016-2090)

ID: oval:org.secpod.oval:def:1800548Date: (C)2018-03-28   (M)2023-11-13
Class: PATCHFamily: unix




libbsd 0.8.1 and earlier contains a buffer overflow in the function fgetwln. An if checks if it is necessary to reallocate memory in the target buffer. However this check is off by one, therefore an out of bounds write happens. Fixed In Version: libbsd 0.8.2

Platform:
Alpine Linux 3.4
Product:
libbsd
Reference:
6093
CVE-2016-2090
CVE    1
CVE-2016-2090
CPE    2
cpe:/o:alpinelinux:alpine_linux:3.4
cpe:/a:freedesktop:libbsd

© SecPod Technologies