Augeas versions up to and including 1.8.0 are vulnerable to heap-based buffer overflow due to improper handling of escaped strings. Attacker could send crafted strings that would cause the application using augeas to copy past the end of a buffer, leading to a crash or possible code execution.
References
Configurations
History
No history.
Information
Published : 2017-08-17 19:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-7555
Mitre link : CVE-2017-7555
CVE.ORG link : CVE-2017-7555
JSON object : View
Products Affected
augeas
- augeas