Vulnerabilities > Boost

DATE CVE VULNERABILITY TITLE RISK
2013-03-12 CVE-2013-0252 Improper Input Validation vulnerability in Boost
boost::locale::utf::utf_traits in the Boost.Locale library in Boost 1.48 through 1.52 does not properly detect certain invalid UTF-8 sequences, which might allow remote attackers to bypass input validation protection mechanisms via crafted trailing bytes.
network
low complexity
boost CWE-20
5.0
2012-07-25 CVE-2012-2677 Numeric Errors vulnerability in Boost Pool 2.0.0
Integer overflow in the ordered_malloc function in boost/pool/pool.hpp in Boost Pool before 3.9 makes it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large memory chunk size value, which causes less memory to be allocated than expected.
network
low complexity
boost CWE-189
5.0
2008-01-17 CVE-2008-0172 Improper Input Validation vulnerability in Boost 1.33/1.34
The get_repeat_type function in basic_regex_creator.hpp in the Boost regex library (aka Boost.Regex) in Boost 1.33 and 1.34 allows context-dependent attackers to cause a denial of service (NULL dereference and crash) via an invalid regular expression.
network
low complexity
ubuntu boost CWE-20
5.0
2008-01-17 CVE-2008-0171 Improper Input Validation vulnerability in Boost and Boost Regex Library
regex/v4/perl_matcher_non_recursive.hpp in the Boost regex library (aka Boost.Regex) in Boost 1.33 and 1.34 allows context-dependent attackers to cause a denial of service (failed assertion and crash) via an invalid regular expression.
network
low complexity
boost CWE-20
5.0