Troglobit · Redir · CVE-2020-37182
**Name of the Vulnerable Software and Affected Versions**
Redir version 3.3
**Description**
A stack overflow exists in the `doproxyconnect()` function. This occurs because the `sprintf()` buffer lacks proper length checking, allowing attackers to overwrite memory by sending oversized input. This can lead to a segmentation fault and cause the application to crash.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.