boost: input validation bypass
| Package(s): | boost1.49 | CVE #(s): | CVE-2013-0252 | ||||||||||||||||||||||||
| Created: | February 18, 2013 | Updated: | October 4, 2013 | ||||||||||||||||||||||||
| Description: | From the Ubuntu advisory:
It was discovered that the Boost.Locale library incorrectly validated some invalid UTF-8 sequences. An attacker could possibly use this issue to bypass input validation in certain applications. | ||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||
