The igraph_i_strdiff function in igraph_trie.c in igraph through 0.7.1 has an NULL pointer dereference that allows attackers to cause a denial of service (application crash) via a crafted object. Upstream issue: https://github.com/igraph/igraph/issues/1141
Created igraph tracking bugs for this issue: Affects: epel-all [bug 1664022] Affects: fedora-all [bug 1664021]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.