Record summary

CVE-2019-19203 has a selected CVSS score of 7.5 (high); EIP currently links 2 repository PoCs.

Description

An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function gb18030_mbc_enc_len in file gb18030.c, a UChar pointer is dereferenced without checking if it passed the end of the matched string. This leads to a heap-based buffer over-read.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
2

Proofs of concept

2

Repository PoCs

GitHubManhNDd/CVE-2019-19203Repository PoCby ManhNDdStars: 3Not analyzed1 file

6.7 KiB

GitHub

PoC details
GitHubtarantula-team/CVE-2019-19203Repository PoCby tarantula-teamStars: 0Not analyzed1 file

6.7 KiB

GitHub

PoC details

References

9