GNU Aspell 在 文件中的 函数中存在一个越界读取漏洞。当加载二进制 .rws 词典文件时,该函数使用文件头中的偏移量字段作为堆缓冲区的字节索引,但未对这些索引进行边界验证。攻击者可以通过诱导用户运行 aspell 并提供恶意构造的词典文件(通过 --master、--dict-dir 或配置选项指定),从而触发此漏洞,导致堆内存信息泄露或因应用程序崩溃而引发拒绝服务。 该问题已在提交 941953b25031bc9104e83f58e138a664b8dedc3f 中修复,并将在版本 0.60.8.3 中
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-75820 | 1.8 LOW | Integer Truncation Leading to Heap Corruption in GNU Aspell |
| CVE-2026-75818 | 1.8 LOW | Heap Buffer Overflow in GNU Aspell's prezip utility |
No comments yet