In unixODBC before 2.3.5, there is a buffer overflow in the unicodetoansicopy() function in DriverManager/_info.c.
{ "urgency": "not yet assigned" }