security/vuxml: Document vulnerability in readstat

This commit is contained in:
Jason E. Hale 2024-02-11 19:55:07 -05:00
parent cfee643c22
commit 221e9b7667

View file

@ -1,3 +1,30 @@
<vuln vid="388eefc0-c93f-11ee-92ce-4ccc6adda413">
<topic>readstat -- Heap buffer overflow in readstat_convert</topic>
<affects>
<package>
<name>readstat</name>
<range><lt>1.1.9</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>Google reports:</p>
<blockquote cite="https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=33991">
<p>A heap buffer overflow exists in readstat_convert.</p>
</blockquote>
</body>
</description>
<references>
<url>https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=33991</url>
<url>https://osv.dev/vulnerability/OSV-2021-732</url>
<url>https://github.com/WizardMac/ReadStat/issues/285</url>
</references>
<dates>
<discovery>2021-05-05</discovery>
<entry>2024-02-12</entry>
</dates>
</vuln>
<vuln vid="cb22a9a6-c907-11ee-8d1c-40b034429ecf">
<topic>p5-Spreadsheet-ParseExcel -- Remote Code Execution Vulnerability</topic>
<affects>