« List of all CVEs

CVE-2012-6090

Published: 1/4/2013 Last updated: 9/16/2024 Reserved: 12/6/2012

Multiple stack-based buffer overflows in the expand function in os/pl-glob.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted filename.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (1)

conf-swi-prolog

Products affected (1)

Product Vendor Version
n/a n/a 17.14.1

References (8)