CVE-2018-14447

Name
CVE-2018-14447
Description
trim_whitespace in lexer.l in libConfuse v3.2.1 has an out-of-bounds read.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Exploit https://github.com/martinh/libconfuse/issues/109
Not Applicable http://hac425.unaux.com/index.php/archives/64/
Third Party Advisory https://lists.debian.org/debian-lts-announce/2018/08/msg00017.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:libconfuse_project:libconfuse:3.2.1:*:*:*:*:*:*:* libconfuse == None == 3.2.1

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
confuse 3.11-main 3.2.2-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
confuse 3.10-main 3.2.2-r0 Natanael Copa <ncopa@alpinelinux.org> fixed