PT-2017-11944 · Chicken+1 · Chicken Scheme+1

Peter Bex

·

Published

2017-07-16

·

Updated

2024-12-05

·

CVE-2017-11343

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions CHICKEN Scheme versions prior to 4.12.1
Description The issue is related to an incomplete fix for a previous problem, which allows an algorithmic complexity attack. An attacker can provide crafted input that, when inserted into the symbol table, results in O(n) lookup time, affecting the performance.
Recommendations For versions prior to 4.12.1, update to version 4.12.1 or later to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1853
ALT-PU-2024-13015
CVE-2017-11343

Affected Products

Alt Linux
Chicken Scheme