TinyDir is a lightweight C directory and file reader. Buffer overflows in the `tinydir_file_open()` function. This vulnerability has been patched in version 1.2.6. http://packetstormsecurity.com/files/176060/TinyDir-1.2.5-Buffer-Overflow.html http://www.openwall.com/lists/oss-security/2023/12/04/1 https://github.com/cxong/tinydir/releases/tag/1.2.6 https://github.com/cxong/tinydir/security/advisories/GHSA-jf5r-wgf4-qhxf
Created tinydir tracking bugs for this issue: Affects: epel-all [bug 2253971] Affects: fedora-all [bug 2253970]