Crypto++ 5.6.4 incorrectly uses Microsoft's stack-based _malloca and _freea functions. The library will request a block of memory to align a table in memory. If the table is later reallocated, then the wrong pointer could be freed.
{ "cpe": "cpe:2.3:a:cryptopp:crypto\\+\\+:5.6.4:*:*:*:*:*:*:*", "source": "CPE_STRING", "extracted_events": [ { "introduced": "5.6.4" }, { "last_affected": "5.6.4" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-7544.json"