CVE-2016-7415

Description

Stack-based buffer overflow in the Locale class in common/locid.cpp in International Components for Unicode (ICU) through 57.1 for C/C++ allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long locale string.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
2.161

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.0Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.1Windows
Multiple Vulnerabilities are affected in IBM Planning Analytics Local 2.0Windows
International Components for Unicode library (USN-1989-1) libicu48_4.8.1.1-3ubuntu0.7_i386.debLinux
International Components for Unicode library (USN-1989-1) libicu48_4.8.1.1-3ubuntu0.7_amd64.debLinux
International Components for Unicode library (USN-2522-1) libicu52_52.1-3ubuntu0.5_i386.debLinux
International Components for Unicode library (USN-2522-1) libicu52_52.1-3ubuntu0.5_amd64.debLinux
International Components for Unicode library (USN-3227-1) libicu48_4.8.1.1-3ubuntu0.7_i386.debLinux
International Components for Unicode library (USN-3227-1) libicu48_4.8.1.1-3ubuntu0.7_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234