PT-2023-36332 · Gnu · Gnu Indent

Published

2023-09-30

·

Updated

2023-09-30

·

CVE-2023--40305

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: GNU indent version 2.2.13
Description: The issue is related to a heap-based buffer overflow in the search brace function in indent.c via a crafted file, as well as a heap overread in the lexi() function.
Recommendations: For GNU indent version 2.2.13, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2023--40305
MGASA-2023-0274

Affected Products

Gnu Indent