Bugzilla – Bug 1212490
VUL-0: CVE-2014-125106: nanopb: size_t overflow in pb_dec_bytes and pb_dec_string.
Last modified: 2023-06-19 07:16:29 UTC
CVE-2014-125106 Nanopb before 0.3.1 allows size_t overflows in pb_dec_bytes and pb_dec_string. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-125106 https://www.cve.org/CVERecord?id=CVE-2014-125106 http://www.cvedetails.com/cve/CVE-2014-125106/ https://github.com/nanopb/nanopb/blob/master/CHANGELOG.txt https://github.com/nanopb/nanopb/commit/d2099cc8f1adb33d427a44a5e32ed27b647c7168 https://github.com/nanopb/nanopb/compare/nanopb-0.3.0...nanopb-0.3.1
openSUSE:Factory and Backports codestreams already fixed. Closing