CVE-2020-36149 - log back

CVE-2020-36149 edited at 08 Feb 2021 23:00:33
Severity
- Unknown
+ Low
Remote
- Unknown
+ Local
Type
- Unknown
+ Denial of service
Description
+ Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).
References
+ https://github.com/hoene/libmysofa/issues/137
+ https://github.com/hoene/libmysofa/pull/146
Notes
CVE-2020-36149 created at 08 Feb 2021 22:56:11