CVE-2020-10531
12.03.2020, 19:15
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.Enginsight
| Vendor | Product | Version |
|---|---|---|
| icu-project | international_components_for_unicode | 𝑥 ≤ 66.1 |
| redhat | enterprise_linux_desktop | 6.0 |
| redhat | enterprise_linux_server | 6.0 |
| redhat | enterprise_linux_workstation | 6.0 |
| chrome | 𝑥 < 80.0.3987.122 | |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 19.10 |
| opensuse | leap | 15.1 |
| oracle | banking_extensibility_workbench | 14.3.0 |
| oracle | banking_extensibility_workbench | 14.4.0 |
| nodejs | node.js | 10.0.0 ≤ 𝑥 ≤ 10.12.0 |
| nodejs | node.js | 10.13.0 ≤ 𝑥 < 10.21.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| chromium-browser |
| ||||||||
| icu |
|
References