Critical severity9.1NVD Advisory· Published Oct 14, 2019· Updated Jun 17, 2026
CVE-2019-17544
CVE-2019-17544
Description
libaspell.a in GNU Aspell before 0.60.8 has a stack-based buffer over-read in acommon::unescape in common/getdata.cpp via an isolated \ character.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- GNU/Aspelldescription
- Range: <0.60.8
- osv-coords7 versionspkg:rpm/suse/aspell&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP4pkg:rpm/suse/aspell&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/aspell&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/aspell&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/aspell&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/aspell&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4pkg:rpm/suse/aspell&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5
< 0.60.6.1-18.3.1+ 6 more
- (no CPE)range: < 0.60.6.1-18.3.1
- (no CPE)range: < 0.60.6.1-18.3.1
- (no CPE)range: < 0.60.6.1-18.3.1
- (no CPE)range: < 0.60.6.1-18.3.1
- (no CPE)range: < 0.60.6.1-18.3.1
- (no CPE)range: < 0.60.6.1-18.3.1
- (no CPE)range: < 0.60.6.1-18.3.1
Patches
Vulnerability mechanics
References
8- github.com/GNUAspell/aspell/commit/80fa26c74279fced8d778351cff19d1d8f44fe4envdPatchThird Party Advisory
- bugs.chromium.org/p/oss-fuzz/issues/detailnvdThird Party Advisory
- github.com/GNUAspell/aspell/compare/rel-0.60.7...rel-0.60.8nvdThird Party Advisory
- usn.ubuntu.com/4155-1/nvdThird Party Advisory
- lists.debian.org/debian-lts-announce/2019/10/msg00027.htmlnvd
- lists.debian.org/debian-lts-announce/2021/07/msg00021.htmlnvd
- usn.ubuntu.com/4155-2/nvd
- www.debian.org/security/2021/dsa-4948nvd
News mentions
0No linked articles in our index yet.