Buffer overflow in the "read-u8vector!" procedure in the srfi-4 unit in CHICKEN stable 4.8.0.7 and development snapshots before 4.9.1 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via a "#f" value in the NUM argument.
| Software | From | Fixed in |
|---|---|---|
| call-cc / chicken | - | 4.9.0.x |
| call-cc / chicken | 4.8.0.7 | 4.8.0.7.x |