CVE-2018-12085

Description

Liblouis 3.6.0 has a stack-based Buffer Overflow in the function parseChars in compileTranslationTable.c, a different vulnerability than CVE-2018-11440.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.34

Associated Vulnerability

VulnerabilityOS Platform
(RHSA-2020:1708) liblouis security and bug fix update liblouis-2.6.2-21.el8.i686.rpmLinux
(RHSA-2020:1708) liblouis security and bug fix update liblouis-2.6.2-21.el8.x86_64.rpmLinux
(RHSA-2020:1708) liblouis security and bug fix update liblouis-debugsource-2.6.2-21.el8.i686.rpmLinux
(RHSA-2020:1708) liblouis security and bug fix update liblouis-debugsource-2.6.2-21.el8.x86_64.rpmLinux
(RHSA-2020:1708) liblouis security and bug fix update python3-louis-2.6.2-21.el8.noarch.rpmLinux
(CESA-2020:1708) liblouis security and bug fix update liblouis-2.6.2-21.el8.i686.rpmLinux
(CESA-2020:1708) liblouis security and bug fix update liblouis-2.6.2-21.el8.x86_64.rpmLinux
(CESA-2020:1708) liblouis security and bug fix update python3-louis-2.6.2-21.el8.noarch.rpmLinux
(RHSA-2020:1708)Moderate: security and bug fix update liblouis-debuginfo-2.6.2-21.el8.i686.rpmLinux
(RHSA-2020:1708)Moderate: security and bug fix update liblouis-debuginfo-2.6.2-21.el8.x86_64.rpmLinux
(RHSA-2020:1708)Moderate: security and bug fix update liblouis-utils-debuginfo-2.6.2-21.el8.i686.rpmLinux
(RHSA-2020:1708)Moderate: security and bug fix update liblouis-utils-debuginfo-2.6.2-21.el8.x86_64.rpmLinux
liblouis security and bug fix update (RLSA-2020:1708) liblouis-2.6.2-21.el8.i686.rpmLinux
liblouis security and bug fix update (RLSA-2020:1708) liblouis-2.6.2-21.el8.x86_64.rpmLinux
liblouis security and bug fix update (RLSA-2020:1708) python3-louis-2.6.2-21.el8.noarch.rpmLinux
Liblouis update (ELSA-2020-1708) liblouis-2.6.2-21.el8.i686.rpmLinux
Liblouis update (ELSA-2020-1708) liblouis-2.6.2-21.el8.x86_64.rpmLinux
Python3-louis update (ELSA-2020-1708) python3-louis-2.6.2-21.el8.noarch.rpmLinux
geronimo-jaxrpc Security Update (ALAS-2020-1524) geronimo-jaxrpc-2.1-14.amzn2.noarch.rpmLinux
geronimo-jaxrpc Security Update (ALAS-2020-1524) geronimo-jaxrpc-javadoc-2.1-14.amzn2.noarch.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234