idn2_to_ascii_4i in lib/lookup.c in GNU libidn2 before 2...
Critical severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Oct 21, 2019
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Apr 4, 2024
idn2_to_ascii_4i in lib/lookup.c in GNU libidn2 before 2.1.1 has a heap-based buffer overflow via a long domain string.
References