An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a long string. https://github.com/uriparser/uriparser/issues/183 https://github.com/uriparser/uriparser/pull/186 https://github.com/uriparser/uriparser/commit/bb6b9b3f25fbafeb12dac68574d9f677b09880e3
Created uriparser tracking bugs for this issue: Affects: epel-8 [bug 2278810] Affects: fedora-38 [bug 2278811] Affects: fedora-39 [bug 2278812] Affects: fedora-40 [bug 2278813]