yocto ▾
›
kirkstone ▾
›
component
›
aspell
Component Overview
Vulnerability Overview
Name
aspell
Version
0.60.8
Type
library
Description
GNU Aspell spell-checker
Licenses
LGPL-2.0-only | LGPL-2.1-only
PURL
-
CPE
cpe:2.3:*:*:aspell:0.60.8:*:*:*:*:*:*:*
Other Versions
#
Project
Branch
Version
yocto
master
0.60.8.2
yocto
scarthgap
0.60.8.1
Vulnerabilities
#
Name
Analysis
Description
CVE-2019-25051
Exploitable
objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow in acommon::ObjStack::dup_top (called from acommon::StringMap::add and acommon::Config::lookup_list).