CVE-2023-32181: Stack buffer overflow in "econf_writeFile" function
Published Jun 1, 2023
·Updated
A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in openSUSE libeconf allows for DoS via malformed configuration files This issue affects libeconf: before 0.5.2.
Affected Software
1 affected component
openSUSE libeconf<0.5.2
Event History
Jun 1, 2023
CVE Published
via MITRE·11:46 AM
Data Sourced
via MITRE·11:46 AM
DescriptionSeverityWeakness
Data Sourced
12:15 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2023-32181.
2
What is the severity of CVE-2023-32181?
The severity of CVE-2023-32181 is medium (6.5).
3
Which software is affected by this vulnerability?
The openSUSE libeconf software version up to and excluding 0.5.2 is affected by this vulnerability.
4
How does this vulnerability manifest?
This vulnerability allows for a Denial-of-Service (DoS) attack through malformed configuration files.
5
Where can I find more information about CVE-2023-32181?
You can find more information about CVE-2023-32181 at the following references: (1) https://bugzilla.suse.com/show_bug.cgi?id=CVE-2023-32181, (2) https://github.com/openSUSE/libeconf/issues/178