chicken: buffer overflow
| Package(s): | chicken | CVE #(s): | |||||||||
| Created: | April 7, 2015 | Updated: | April 8, 2015 | ||||||||
| Description: | From the Red Hat bugzilla:
Buffer overflow vulnerability has been reported in CHICKEN Scheme's substring-index[-ci] procedures. This overrun is only triggered when an integer greater than zero is passed as the optional START argument. As a work-around users are advised to switch to the equivalent string-contains procedure from SRFI 13 which is also shipped with CHICKEN. All releases of CHICKEN up until 4.9.0.1 are affected. | ||||||||||
| Alerts: |
| ||||||||||
