There is an illegal address access in the function output_hex() in data/data-out.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://savannah.gnu.org/forum/forum.php?forum_id=8936 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1482429 | issue tracking third party advisory |