boost::locale::utf::utf_traits in the Boost.Locale library in Boost 1.48 up to and including 1.52 does not properly detect certain invalid UTF-8 sequences, which might allow remote malicious users to bypass input validation protection mechanisms via crafted trailing bytes.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
boost boost 1.48.0 |
||
boost boost 1.49.0 |
||
boost boost 1.52.0 |
||
boost boost 1.50.0 |
||
boost boost 1.51.0 |