Product:

Uriparser

(Uriparser_project)
Repositories https://github.com/uriparser/uriparser
#Vulnerabilities 6
Date Id Summary Products Score Patch Annotated
2019-01-16 CVE-2018-20721 URI_FUNC() in UriParse.c in uriparser before 0.9.1 has an out-of-bounds read (in uriParse*Ex* functions) for an incomplete URI with an IPv6 address containing an embedded IPv4 address, such as a "//[::44.1" address. Debian_linux, Uriparser 9.8
2018-11-12 CVE-2018-19199 An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an integer overflow via a uriComposeQuery* or uriComposeQueryEx* function because of an unchecked multiplication. Debian_linux, Uriparser 9.8
2018-11-12 CVE-2018-19198 An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an out-of-bounds write via a uriComposeQuery* or uriComposeQueryEx* function because the '&' character is mishandled in certain contexts. Debian_linux, Uriparser 9.8
2018-11-12 CVE-2018-19200 An issue was discovered in uriparser before 0.9.0. UriCommon.c allows attempted operations on NULL input via a uriResetUri* function. Debian_linux, Uriparser 7.5