CVE-2023-0341: Stack Buffer Overflow in editorconfig-core-c
A stack buffer overflow exists in the ecglob function of editorconfig-core-c before v0.12.6 which allowed an attacker to arbitrarily write to the stack and possibly allows remote code execution. editorconfig-core-c v0.12.6 resolved this vulnerability by bound checking all write operations over the ppcre buffer.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2023-0341?
CVE-2023-0341 has a critical severity due to the potential for remote code execution resulting from a stack buffer overflow.
How do I fix CVE-2023-0341?
To fix CVE-2023-0341, update editorconfig-core-c to version 0.12.6 or later which addresses the vulnerability.
What software is affected by CVE-2023-0341?
CVE-2023-0341 affects editorconfig-core-c versions prior to 0.12.6.
Can CVE-2023-0341 be exploited remotely?
Yes, CVE-2023-0341 can be exploited remotely due to its stack buffer overflow vulnerability.
What are the symptoms of an exploit for CVE-2023-0341?
Symptoms of an exploit for CVE-2023-0341 may include unexpected crashes or abnormal behavior in applications utilizing the affected software.