← Back

CVE-2019-14872

nvd nist
Published: Mar 19, 2020Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

The _dtoa_r function of the newlib libc library, prior to version 3.3.0, performs multiple memory allocations without checking their return value. This could result in NULL pointer dereference.

Affected (1)

Newlib
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 3.3.0

References (2)

Timeline

No history available yet.