EditorConfig core C library: arbitrary stack write A vulnerability has been discovered in EditorConfig Core C library, which may lead to arbitrary code execution. editorconfig-core-c 2024-11-06 2024-11-06 905308 local and remote 0.12.6 0.12.6

EditorConfig core library written in C (for use by plugins supporting EditorConfig parsing)

A vulnerability has been discovered in EditorConfig Core C library. Please review the CVE identifier referenced below for details.

Please review the referenced CVE identifier for details.

There is no known workaround at this time.

All EditorConfig core C library users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=app-text/editorconfig-core-c-0.12.6"
CVE-2023-0341 graaff graaff