Double free in i18n/zonemeta.cpp in International Components for Unicode (ICU) for C/C++ through 59.1 allows remote attackers to execute arbitrary code via a crafted string, aka a "redundant UVector entry clean up function call" issue.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 03:13
Type | Values Removed | Values Added |
---|---|---|
References | () http://bugs.icu-project.org/trac/changeset/40324/trunk/icu4c/source/i18n/zonemeta.cpp - Issue Tracking, Patch | |
References | () http://www.sourcebrella.com/blog/double-free-vulnerability-international-components-unicode-icu/ - Third Party Advisory | |
References | () https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html - |
Information
Published : 2017-10-16 16:29
Updated : 2024-11-21 03:13
NVD link : CVE-2017-14952
Mitre link : CVE-2017-14952
CVE.ORG link : CVE-2017-14952
JSON object : View
Products Affected
icu-project
- international_components_for_unicode
CWE
CWE-415
Double Free