Security Advisory

CVE-2018-17942

8.8
HIGH

Vulnerability Description

The convert_to_decimal function in vasnprintf.c in Gnulib before 2018-09-23 has a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing.
Published Date October 3, 2018
Official Source NIST NVD Advisory