Vulnerability Database
Blog
FAQ
Docs
CVE-2018-20588
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2018-20588
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-20588.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2018-20588
Published
2018-12-30T14:29:00Z
Modified
2025-02-19T02:35:10.720683Z
Severity
6.5 (Medium)
CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
[none]
Details
lib/support/unicodeconv/unicodeconv.c in libotfcc.a in otfcc v0.10.3-alpha has a buffer over-read.
References
https://github.com/caryll/otfcc/issues/59
Affected packages
Git
/
github.com/caryll/otfcc
Affected ranges
Type
GIT
Repo
https://github.com/caryll/otfcc
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Last affected
0cd9b684e46365993e4f2c0d9fea36b2e46a63ff
Affected versions
v0.*
v0.0.5
v0.1.0
v0.1.1
v0.1.2
v0.1.3
v0.1.4
v0.1.5
v0.1.6
v0.1.7
v0.1.8
v0.1.9
v0.10.0-alpha
v0.10.1-alpha
v0.10.2-alpha
v0.10.3-alpha
v0.2.0
v0.2.1
v0.2.2
v0.2.3
v0.2.4
v0.3.0
v0.3.1
v0.3.2
v0.3.3
v0.3.4a
v0.3.4b
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.5.0
v0.5.1
v0.5.2
v0.6.0
v0.6.1
v0.6.2
v0.6.3
v0.7.0
v0.7.1
v0.7.2
v0.8.0
v0.8.1
v0.8.4
v0.8.5
v0.8.6
v0.9.0
v0.9.1
v0.9.2
v0.9.3
v0.9.4
v0.9.5
v0.9.6
CVE-2018-20588 - OSV