Related Vulnerabilities: CVE-2020-28928  

The wcsnrtombs function in all musl libc versions up to 1.2.1 has been found to have multiple bugs in the handling of the destination buffer size when limiting the input character count, which can lead to an infinite loop with no progress (no overflow) or to writing past the end of the destination buffer.

Severity Medium

Remote No

Type Arbitrary code execution

Description

The wcsnrtombs function in all musl libc versions up to 1.2.1 has been found to have multiple bugs in the handling of the destination buffer size when limiting the input character count, which can lead to an infinite loop with no progress (no overflow) or to writing past the end of the destination buffer.

AVG-1287 musl 1.2.1-1 Medium Vulnerable FS#68685

https://www.openwall.com/lists/oss-security/2020/11/20/4
https://git.musl-libc.org/cgit/musl/commit/?id=3ab2a4e02682df1382955071919d8aa3c3ec40d4