5
CVSSv2

CVE-2013-0252

Published: 12/03/2013 Updated: 05/12/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

boost::locale::utf::utf_traits in the Boost.Locale library in Boost 1.48 up to and including 1.52 does not properly detect certain invalid UTF-8 sequences, which might allow remote malicious users to bypass input validation protection mechanisms via crafted trailing bytes.

Vulnerable Product Search on Vulmon Subscribe to Product

boost boost 1.48.0

boost boost 1.49.0

boost boost 1.52.0

boost boost 1.50.0

boost boost 1.51.0

Vendor Advisories

Boost incorrectly validated certain UTF-8 sequences ...