CVE-2022-25872

Publication date

2022-06-17 20:05:23

Family

snyk

State

PUBLISHED

Description

All versions of package fast-string-search are vulnerable to Out-of-bounds Read due to incorrect memory freeing and length calculation for any non-string input as the source. This allows the attacker to read previously allocated memory.