PT-2017-18850 · Chicken+1 · Chicken Scheme+1

Peter Bex

·

Published

2017-06-01

·

Updated

2024-12-05

·

CVE-2017-9334

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions CHICKEN Scheme versions prior to 4.13
Description The issue arises from an incorrect "pair?" check in the Scheme "length" procedure, leading to an unsafe pointer dereference. This allows an attacker to cause a denial of service by passing an improper list to an application that calls "length" on it.
Recommendations For versions prior to 4.13, update to version 4.13 or later to resolve the issue.

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1853
ALT-PU-2024-13015
CVE-2017-9334

Affected Products

Alt Linux
Chicken Scheme