CVE-2017-1000172

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
17/11/2017
Last modified:
20/04/2025

Description

Creolabs Gravity Version: 1.0 Use-After-Free Possible code execution. An example of a Heap-Use-After-Free after the 'sublexer' pointer has been freed. Line 542 of gravity_lexer.c. 'lexer' is being used to access a variable but 'lexer' has already been freed, creating a Heap Use-After-Free condition.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:creolabs:gravity:1.0:*:*:*:*:*:*:*