Unrated severityNVD Advisory· Published Mar 12, 2013· Updated Apr 29, 2026
CVE-2013-0252
CVE-2013-0252
Description
boost::locale::utf::utf_traits in the Boost.Locale library in Boost 1.48 through 1.52 does not properly detect certain invalid UTF-8 sequences, which might allow remote attackers to bypass input validation protection mechanisms via crafted trailing bytes.
Affected products
5Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- bugs.debian.org/cgi-bin/bugreport.cginvd
- bugs.debian.org/cgi-bin/bugreport.cginvd
- lists.fedoraproject.org/pipermail/package-announce/2013-February/099103.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2013-February/099122.htmlnvd
- www.boost.org/users/news/boost_locale_security_notice.htmlnvd
- www.mandriva.com/security/advisoriesnvd
- www.openwall.com/lists/oss-security/2013/02/04/2nvd
- www.securityfocus.com/bid/57675nvd
- www.ubuntu.com/usn/USN-1727-1nvd
- bugzilla.redhat.com/show_bug.cginvd
- svn.boost.org/trac/boost/ticket/7743nvd
News mentions
0No linked articles in our index yet.