CVE-2020-28928
—CVSS 3.1
5.5 medium
EPSS
<1%p49
Published
()
Modified
Description
In musl libc through 1.2.1, wcsnrtombs mishandles particular combinations of destination buffer size and source character limit, as demonstrated by an invalid write access (buffer overflow).
- Vendors
- musl-libcdebianfedoraprojectoracle
- Products
- musl, debian linux, fedora, graalvm
- Weakness
- CWE-787
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.