Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39919
HistoryMar 23, 2023 - 10:49 a.m.

Denial Of Service (DoS)

2023-03-2310:49:59
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
vulnerable function buffer overflow application crash compiletranslationtable.c datapath length check

EPSS

0.002

Percentile

54.5%

liblouis.so is vulnerable to Denial Of Service (DoS). The vulnerability exists due to the lou_setDataPath function in compileTranslationTable.c because it does not check the length of a path before copying into the dataPath which allows an attacker to cause a buffer overflow which leads to an application crash.