CVE-2019-20433 PUBLISHED

libaspell.a in GNU Aspell before 0.60.8 has a buffer over-read for a string ending with a single '\0' byte, if the encoding is set to ucs-2 or ucs-4 outside of the application, as demonstrated by the ASPELL_CONF environment variable.

EPSS 0.64% · 70.5th percentile

Risk Scores

EPSS Score
0.64%
70.5th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSaspell0.60.7~20110707-3ubuntu0.1, 0.60.7~20110707-3build1, 0.60.7~20110707-3
Ubuntu:Pro:14.04:LTSaspell0.60.7~20110707-1ubuntu1+esm1, 0, 0.60.7~20110707-1build1
Ubuntu:18.04:LTSaspell0, 0.60.7~20110707-4ubuntu0.2, 0.60.7~20110707-4ubuntu0.1

Timeline

References

Open in Interactive Console →