CVE-2016-6831

Name
CVE-2016-6831
Description
The "process-execute" and "process-spawn" procedures did not free memory correctly when the execve() call failed, resulting in a memory leak. This could be abused by an attacker to cause resource exhaustion or a denial of service. This affects all releases of CHICKEN up to and including 4.11 (it will be fixed in 4.12 and 5.0, which are not yet released).
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Patch http://lists.nongnu.org/archive/html/chicken-announce/2016-08/msg00001.html
Third Party Advisory http://www.securityfocus.com/bid/92550

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:call-cc:chicken:*:*:*:*:*:*:*:* chicken >= None <= 4.11.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status