← Back to CVE List

CVE-2018-7186

Published: 2018-02-16T16:29Z
Last Modified: 2024-11-21T04:11Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Leptonica before 1.75.3 does not limit the number of characters in a %s format argument to fscanf or sscanf, which allows remote attackers to cause a denial of service (stack-based buffer overflow) or possibly have unspecified other impact via a long string, as demonstrated by the gplotRead and ptaReadStream functions. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt