Home/Product/liblouis
Product

liblouis

22 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-26769
all versions
Buffer Overflow vulnerability found in Liblouis Lou_Trace v.3.24.0 allows a remote attacker to cause a denial of service via the r
7.5HIGH
CVE-2023-26768
all versions
Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the compileTran
7.5HIGH
CVE-2023-26767
all versions
Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the lou_logFile
7.5HIGH
CVE-2022-31783
all versions
Liblouis 3.21.0 has an out-of-bounds write in compileRule in compileTranslationTable.c, as demonstrated by lou_trace.
5.5MEDIUM
CVE-2022-26981
<= 3.21.0
Liblouis through 3.21.0 has a buffer overflow in compilePassOpcode in compileTranslationTable.c (called, indirectly, by tools/lou_
7.8HIGH
CVE-2014-8184
>= 2.5.0 and < 2.5.4
A vulnerability was found in liblouis, versions 2.5.x before 2.5.4. A stack-based buffer overflow was found in findTable() in libl
7.8HIGH
CVE-2018-17294
< 3.7.0
The matchCurrentInput function inside lou_translateString.c of Liblouis prior to 3.7 does not check the input string's length, all
6.5MEDIUM
CVE-2017-15101
< 2.5.4
A missing patch for a stack-based buffer overflow in findTable() was found in Red Hat version of liblouis before 2.5.4. An attacke
7.8HIGH
CVE-2018-12085
all versions
Liblouis 3.6.0 has a stack-based Buffer Overflow in the function parseChars in compileTranslationTable.c, a different vulnerabilit
8.8HIGH
CVE-2018-11685
all versions
Liblouis 3.5.0 has a stack-based Buffer Overflow in the function compileHyphenation in compileTranslationTable.c.
8.8HIGH
CVE-2018-11684
all versions
Liblouis 3.5.0 has a stack-based Buffer Overflow in the function includeFile in compileTranslationTable.c.
8.8HIGH
CVE-2018-11683
all versions
Liblouis 3.5.0 has a stack-based Buffer Overflow in the function parseChars in compileTranslationTable.c, a different vulnerabilit
8.8HIGH
CVE-2018-11577
all versions
Liblouis 3.5.0 has a Segmentation fault in lou_logPrint in logging.c.
8.8HIGH
CVE-2018-11440
all versions
Liblouis 3.5.0 has a stack-based Buffer Overflow in the function parseChars in compileTranslationTable.c.
8.8HIGH
CVE-2018-11410
all versions
An issue was discovered in Liblouis 3.5.0. A invalid free in the compileRule function in compileTranslationTable.c allows remote a
9.8CRITICAL
CVE-2017-13744
all versions
There is an illegal address access in the function _lou_getALine() in compileTranslationTable.c:343 in Liblouis 3.2.0.
6.5MEDIUM
CVE-2017-13743
all versions
There is a buffer overflow in Liblouis 3.2.0, triggered in the function _lou_showString() in utils.c, that will lead to a remote d
6.5MEDIUM
CVE-2017-13742
all versions
There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function includeFile() in compileTranslationTable.c, th
6.5MEDIUM
CVE-2017-13741
all versions
There is a use-after-free in the function compileBrailleIndicator() in compileTranslationTable.c in Liblouis 3.2.0 that will lead
6.5MEDIUM
CVE-2017-13740
all versions
There is a stack-based buffer overflow in Liblouis 3.2.0, triggered in the function parseChars() in compileTranslationTable.c, tha
8.8HIGH
CVE-2017-13739
all versions
There is a heap-based buffer overflow that causes a more than two thousand bytes out-of-bounds write in Liblouis 3.2.0, triggered
8.8HIGH
CVE-2017-13738
all versions
There is an illegal address access in the _lou_getALine function in compileTranslationTable.c:346 in Liblouis 3.2.0.
8.8HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin