CVE-2014-9651: Buffer Overflow
Buffer overflow in CHICKEN 4.9.0.x before 4.9.0.2, 4.9.x before 4.9.1, and before 5.0 allows attackers to have unspecified impact via a positive START argument to the "substring-index[-ci] procedures."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9651?
CVE-2014-9651 has a medium severity rating due to the potential for a buffer overflow which could be exploited by attackers.
How do I fix CVE-2014-9651?
To fix CVE-2014-9651, users should upgrade to CHICKEN version 4.9.0.2, 4.9.1, or a later version.
What causes CVE-2014-9651?
CVE-2014-9651 is caused by a buffer overflow vulnerability related to the substring-index procedures that allow a positive START argument.
Which versions of CHICKEN are affected by CVE-2014-9651?
Versions 4.9.0 and 4.9.0.1, as well as any version before 4.9.1 and 5.0, are affected by CVE-2014-9651.
Is CVE-2014-9651 exploitable remotely?
Yes, CVE-2014-9651 can potentially be exploited remotely by attackers through specially crafted input.