Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32716
HistoryOct 26, 2021 - 2:49 a.m.

Denial Of Service (DoS)

2021-10-2602:49:44
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.0004 Low

EPSS

Percentile

5.1%

cracklib is vulnerable to denial of service. The vulnerability exists because of a stack-based buffer overflow in the FascistGecosUser function in lib/fascist.c in cracklib when parsing large GECOS field.

References