cfgtildeexpand in confuse.c in libConfuse 3.3 has a heap-based buffer over-read.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-34910.json"