buildroot ▾
›
2025.02.x ▾
›
component
›
libconfuse
Component Overview
Vulnerability Overview
Name
libconfuse
Version
3.3
Type
library
Description
-
Licenses
ISC
PURL
-
CPE
cpe:2.3:a:libconfuse_project:libconfuse:3.3:-:*:*:*:*:*:*
Other Versions
#
Project
Branch
Version
buildroot
master
3.3
Patches
#
#
Title
Author
Resolve
1
Fix #163: unterminated username used with getpwnam()
Joachim Wiberg <troglobit@gmail.com>
CVE-2022-40320
Vulnerabilities
#
Name
Analysis
Description
CVE-2022-40320
Patched
cfg_tilde_expand in confuse.c in libConfuse 3.3 has a heap-based buffer over-read.