Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39918
HistoryMar 23, 2023 - 9:21 a.m.

Denial Of Service (DoS)

2023-03-2309:21:00
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
denial of service
vulnerability
liblouis.so
buffer overflow
application crash
logging.c

EPSS

0.002

Percentile

54.5%

liblouis.so is vulnerable to Denial Of Service (DoS). The vulnerability exists due to the lou_logFile function in logging.c because it does not check the length of the filename before coping to initialLogFileName which allows an attacker to cause a buffer overflow which leads to an application crash.