A missing patch for a stack-based buffer overflow in findTable() was found in Red Hat version of liblouis before 2.5.4. An attacker could cause a denial of service condition or potentially even arbitrary code execution.
There is an illegal address access in the lougetALine function in compileTranslationTable.c:346 in Liblouis 3.2.0.
There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function parseChars() in compileTranslationTable.c, that will lead to denial of service or possibly unspecified other impact.
There is a heap-based buffer overflow that causes a more than two thousand bytes out-of-bounds write in Liblouis 3.2.0, triggered in the function resolveSubtable() in compileTranslationTable.c. It will lead to denial of service or remote code execution.
AMD. A memory corruption issue was addressed with improved input validation.
A stack-based buffer overflow was found in findTable() in liblouis. An attacker could create a malicious file that would cause applications that use liblouis (such as Orca) to crash, or potentially execute arbitrary code when opened.
Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the compileTranslationTable.c and lousetDataPath functions.
Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the loulogFile function at logginc.c endpoint.
There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function includeFile() in compileTranslationTable.c, that will lead to a denial of service attack.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484334
There is a use-after-free in the function compileBrailleIndicator() in compileTranslationTable.c in Liblouis 3.2.0 that will lead to a denial of service attack.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484332
There is an illegal address access in the function lougetALine() in compileTranslationTable.c:343 in Liblouis 3.2.0.
There is a buffer overflow in Liblouis 3.2.0, triggered in the function loushowString() in utils.c, that will lead to a denial of service attack.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484335
Liblouis 3.21.0 has an out-of-bounds write in compileRule in compileTranslationTable.c, as demonstrated by loutrace.
A stack-based buffer overflow was found in findTable() in liblouis. An attacker could create a malicious file that would cause applications that use liblouis (such as Orca) to crash, or potentially execute arbitrary code when opened.
There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function parseChars() in compileTranslationTable.c, that will lead to denial of service or possibly unspecified other impact.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484306
There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function includeFile() in compileTranslationTable.c, that will lead to a denial of service attack.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484334
There is an illegal address access in the lougetALine function in compileTranslationTable.c:346 in Liblouis 3.2.0.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484297
There is a buffer overflow in Liblouis 3.2.0, triggered in the function loushowString() in utils.c, that will lead to a denial of service attack.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484335
There is a use-after-free in the function compileBrailleIndicator() in compileTranslationTable.c in Liblouis 3.2.0 that will lead to a denial of service attack.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484332
There is an illegal address access in the function lougetALine() in compileTranslationTable.c:343 in Liblouis 3.2.0.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1484338