Vulnerabilities (CVE)

Filtered by vendor Gnu Subscribe
Filtered by product Gnulib
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-17942 1 Gnu 1 Gnulib 2024-02-28 6.8 MEDIUM 8.8 HIGH
The convert_to_decimal function in vasnprintf.c in Gnulib before 2018-09-23 has a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing.