7.5
CVSSv2

CVE-2014-9651

Published: 28/08/2015 Updated: 01/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in CHICKEN 4.9.0.x prior to 4.9.0.2, 4.9.x prior to 4.9.1, and prior to 5.0 allows malicious users to have unspecified impact via a positive START argument to the "substring-index[-ci] procedures."

Vulnerable Product Search on Vulmon Subscribe to Product

call-cc chicken 4.9.0

call-cc chicken 4.9.0.1

call-cc chicken 4.10.0

Vendor Advisories

Debian Bug report logs - #775346 chicken: CVE-2014-9651: buffer overrun in CHICKEN Scheme's substring-index Package: chicken; Maintainer for chicken is Davide Puricelli (evo) <evo@debianorg>; Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Wed, 14 Jan 2015 14:21:02 UTC Severity: grave Tags: fixed-upstream, pa ...
Debian Bug report logs - #788833 chicken: CVE-2015-4556: buffer overrun in CHICKEN Scheme's string-translate* procedure Package: src:chicken; Maintainer for src:chicken is Davide Puricelli (evo) <evo@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Mon, 15 Jun 2015 12:57:02 UTC Severity: grave ...