Vulnerability Details CVE-2020-28928
In musl libc through 1.2.1, wcsnrtombs mishandles particular combinations of destination buffer size and source character limit, as demonstrated by an invalid write access (buffer overflow).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.8%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2020-28928
-
cpe:2.3:a:musl-libc:musl:0.5.0
-
cpe:2.3:a:musl-libc:musl:0.5.9
-
cpe:2.3:a:musl-libc:musl:0.6.0
-
cpe:2.3:a:musl-libc:musl:0.7.0
-
cpe:2.3:a:musl-libc:musl:0.7.1
-
cpe:2.3:a:musl-libc:musl:0.7.10
-
cpe:2.3:a:musl-libc:musl:0.7.11
-
cpe:2.3:a:musl-libc:musl:0.7.12
-
cpe:2.3:a:musl-libc:musl:0.7.5
-
cpe:2.3:a:musl-libc:musl:0.7.6
-
cpe:2.3:a:musl-libc:musl:0.7.7
-
cpe:2.3:a:musl-libc:musl:0.7.8
-
cpe:2.3:a:musl-libc:musl:0.7.9
-
cpe:2.3:a:musl-libc:musl:0.8.0
-
cpe:2.3:a:musl-libc:musl:0.8.1
-
cpe:2.3:a:musl-libc:musl:0.8.10
-
cpe:2.3:a:musl-libc:musl:0.8.2
-
cpe:2.3:a:musl-libc:musl:0.8.3
-
cpe:2.3:a:musl-libc:musl:0.8.4
-
cpe:2.3:a:musl-libc:musl:0.8.5
-
cpe:2.3:a:musl-libc:musl:0.8.6
-
cpe:2.3:a:musl-libc:musl:0.8.7
-
cpe:2.3:a:musl-libc:musl:0.8.8
-
cpe:2.3:a:musl-libc:musl:0.8.9
-
cpe:2.3:a:musl-libc:musl:0.9.0
-
cpe:2.3:a:musl-libc:musl:0.9.1
-
cpe:2.3:a:musl-libc:musl:0.9.10
-
cpe:2.3:a:musl-libc:musl:0.9.11
-
cpe:2.3:a:musl-libc:musl:0.9.12
-
cpe:2.3:a:musl-libc:musl:0.9.13
-
cpe:2.3:a:musl-libc:musl:0.9.14
-
cpe:2.3:a:musl-libc:musl:0.9.15
-
cpe:2.3:a:musl-libc:musl:0.9.2
-
cpe:2.3:a:musl-libc:musl:0.9.3
-
cpe:2.3:a:musl-libc:musl:0.9.4
-
cpe:2.3:a:musl-libc:musl:0.9.5
-
cpe:2.3:a:musl-libc:musl:0.9.6
-
cpe:2.3:a:musl-libc:musl:0.9.7
-
cpe:2.3:a:musl-libc:musl:0.9.8
-
cpe:2.3:a:musl-libc:musl:0.9.9
-
cpe:2.3:a:musl-libc:musl:1.0.0
-
cpe:2.3:a:musl-libc:musl:1.0.1
-
cpe:2.3:a:musl-libc:musl:1.0.2
-
cpe:2.3:a:musl-libc:musl:1.0.3
-
cpe:2.3:a:musl-libc:musl:1.0.4
-
cpe:2.3:a:musl-libc:musl:1.0.5
-
cpe:2.3:a:musl-libc:musl:1.1.0
-
cpe:2.3:a:musl-libc:musl:1.1.1
-
cpe:2.3:a:musl-libc:musl:1.1.10
-
cpe:2.3:a:musl-libc:musl:1.1.11
-
cpe:2.3:a:musl-libc:musl:1.1.12
-
cpe:2.3:a:musl-libc:musl:1.1.13
-
cpe:2.3:a:musl-libc:musl:1.1.14
-
cpe:2.3:a:musl-libc:musl:1.1.15
-
cpe:2.3:a:musl-libc:musl:1.1.16
-
cpe:2.3:a:musl-libc:musl:1.1.17
-
cpe:2.3:a:musl-libc:musl:1.1.18
-
cpe:2.3:a:musl-libc:musl:1.1.19
-
cpe:2.3:a:musl-libc:musl:1.1.2
-
cpe:2.3:a:musl-libc:musl:1.1.20
-
cpe:2.3:a:musl-libc:musl:1.1.21
-
cpe:2.3:a:musl-libc:musl:1.1.22
-
cpe:2.3:a:musl-libc:musl:1.1.23
-
cpe:2.3:a:musl-libc:musl:1.1.24
-
cpe:2.3:a:musl-libc:musl:1.1.3
-
cpe:2.3:a:musl-libc:musl:1.1.4
-
cpe:2.3:a:musl-libc:musl:1.1.5
-
cpe:2.3:a:musl-libc:musl:1.1.6
-
cpe:2.3:a:musl-libc:musl:1.1.7
-
cpe:2.3:a:musl-libc:musl:1.1.8
-
cpe:2.3:a:musl-libc:musl:1.1.9
-
cpe:2.3:a:musl-libc:musl:1.2.0
-
cpe:2.3:a:musl-libc:musl:1.2.1
-
cpe:2.3:a:oracle:graalvm:20.3.2
-
cpe:2.3:a:oracle:graalvm:21.1.0
-
cpe:2.3:o:debian:debian_linux:9.0
-
cpe:2.3:o:fedoraproject:fedora:33
-
cpe:2.3:o:fedoraproject:fedora:34