CVE-2020-17361

Source
https://cve.org/CVERecord?id=CVE-2020-17361
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-17361.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-17361
Published
2020-08-12T18:15:17.403Z
Modified
2026-07-08T20:30:35.569610Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N CVSS Calculator
Summary
[none]
Details

An issue was discovered in ReadyTalk Avian 1.2.0. The vm::arrayCopy method defined in classpath-common.h returns silently when a negative length is provided (instead of throwing an exception). This could result in data being lost during the copy, with varying consequences depending on the subsequent use of the destination buffer. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

References

Affected packages

Git / github.com/readytalk/avian

Affected ranges

Type
GIT
Repo
https://github.com/readytalk/avian
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:readytalk:avian:1.2.0:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "1.2.0"
        },
        {
            "last_affected": "1.2.0"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

1.*
1.2.0
v1.*
v1.2.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-17361.json"