In parser/btorsmt2.c in Boolector 3.0.0, opening a specially crafted input file leads to a use after free in get_failed_assumptions or btor_delete.
References
Link | Resource |
---|---|
https://github.com/Boolector/boolector/issues/28 | Exploit Patch Third Party Advisory |
https://github.com/Boolector/boolector/issues/29 | Exploit Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-02-07T07:00:00
Updated: 2019-02-07T06:57:01
Reserved: 2019-02-06T00:00:00
Link: CVE-2019-7560
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-02-07T07:29:00.487
Modified: 2019-02-07T16:03:26.680
Link: CVE-2019-7560
JSON object: View
Redhat Information
No data.
CWE