CVE-2013-0252
12.03.2013, 22:55
boost::locale::utf::utf_traits in the Boost.Locale library in Boost 1.48 through 1.52 does not properly detect certain invalid UTF-8 sequences, which might allow remote attackers to bypass input validation protection mechanisms via crafted trailing bytes.Enginsight
| Vendor | Product | Version |
|---|---|---|
| boost | boost | 1.48.0 |
| boost | boost | 1.49.0 |
| boost | boost | 1.50.0 |
| boost | boost | 1.51.0 |
| boost | boost | 1.52.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| boost1.40 |
| ||||||||||||||||||||||||||||
| boost1.42 |
| ||||||||||||||||||||||||||||
| boost1.48 |
| ||||||||||||||||||||||||||||
| boost1.49 |
| ||||||||||||||||||||||||||||
| boost1.50 |
|
Common Weakness Enumeration
References