CVE-2018-17294
PoC —CVSS 3.0
6.5 medium
EPSS
3%p85
Published
()
Modified
Description
The matchCurrentInput function inside lou_translateString.c of Liblouis prior to 3.7 does not check the input string's length, allowing attackers to cause a denial of service (application crash via out-of-bounds read) by crafting an input file with certain translation dictionaries.
In the news0 stories
No ingested article mentions this CVE yet.