ZeroHour

CVE-2019-14872

PoC
CVSS 3.1
6.5 medium
EPSS
1%p72
Published
()
Modified
Description

The _dtoa_r function of the newlib libc library, prior to version 3.3.0, performs multiple memory allocations without checking their return value. This could result in NULL pointer dereference.

Vendors
newlib project
Products
newlib
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.