Opencc is for between Traditional Chinese and Simplified Chinese characters and phrases conversion library.
Security Fix(es):
A vulnerability was found in BYVoid OpenCC up to 1.1.9 and classified as critical. Using CWE to declare the problem leads to CWE-122. A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc(). Impacted is confidentiality, integrity, and availability. The exploit is available at github.com. It is declared as proof-of-concept. Applying the patch 345c9a50ab07018f1b4439776bad78a0d40778ec is able to eliminate this problem. The bugfix is ready for download at github.com.(CVE-2025-15536)
{
"severity": "Medium"
}{
"aarch64": [
"opencc-1.1.3-3.oe2203sp4.aarch64.rpm",
"opencc-debuginfo-1.1.3-3.oe2203sp4.aarch64.rpm",
"opencc-debugsource-1.1.3-3.oe2203sp4.aarch64.rpm",
"opencc-devel-1.1.3-3.oe2203sp4.aarch64.rpm",
"opencc-help-1.1.3-3.oe2203sp4.aarch64.rpm"
],
"x86_64": [
"opencc-1.1.3-3.oe2203sp4.x86_64.rpm",
"opencc-debuginfo-1.1.3-3.oe2203sp4.x86_64.rpm",
"opencc-debugsource-1.1.3-3.oe2203sp4.x86_64.rpm",
"opencc-devel-1.1.3-3.oe2203sp4.x86_64.rpm",
"opencc-help-1.1.3-3.oe2203sp4.x86_64.rpm"
],
"src": [
"opencc-1.1.3-3.oe2203sp4.src.rpm"
]
}