A heap out-of-bounds read flaw was found in builtin.c in the gawk package. This issue may lead to a crash and could be used to read sensitive information.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://access.redhat.com/security/cve/CVE-2023-4156 | vdb entry exploit third party advisory release notes issue tracking |
https://bugzilla.redhat.com/show_bug.cgi?id=2215930 | release notes exploit third party advisory issue tracking |