CVE-2013-0252

EUVD-2013-0283
boost::locale::utf::utf_traits in the Boost.Locale library in Boost 1.48 through 1.52 does not properly detect certain invalid UTF-8 sequences, which might allow remote attackers to bypass input validation protection mechanisms via crafted trailing bytes.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 81%
Affected Products (NVD)
VendorProductVersion
boostboost
1.48.0
boostboost
1.49.0
boostboost
1.50.0
boostboost
1.51.0
boostboost
1.52.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
boost1.40
hardy
dne
lucid
not-affected
oneiric
dne
precise
dne
quantal
dne
raring
dne
saucy
dne
trusty
dne
utopic
dne
vivid
dne
wily
dne
xenial
dne
yakkety
dne
zesty
dne
boost1.42
hardy
dne
lucid
dne
oneiric
not-affected
precise
dne
quantal
dne
raring
dne
saucy
dne
trusty
dne
utopic
dne
vivid
dne
wily
dne
xenial
dne
yakkety
dne
zesty
dne
boost1.48
hardy
dne
lucid
dne
oneiric
dne
precise
ignored
quantal
dne
raring
dne
saucy
dne
trusty
dne
utopic
dne
vivid
dne
wily
dne
xenial
dne
yakkety
dne
zesty
dne
boost1.49
hardy
dne
lucid
dne
oneiric
dne
precise
dne
quantal
Fixed 1.49.0-3.1ubuntu1.2
released
raring
Fixed 1.49.0-3.2ubuntu1
released
saucy
Fixed 1.49.0-3.2ubuntu1
released
trusty
dne
utopic
dne
vivid
dne
wily
dne
xenial
dne
yakkety
dne
zesty
dne
boost1.50
hardy
dne
lucid
dne
oneiric
dne
precise
dne
quantal
ignored
raring
dne
saucy
dne
trusty
dne
utopic
dne
vivid
dne
wily
dne
xenial
dne
yakkety
dne
zesty
dne