An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an integer overflow via a uriComposeQuery* or uriComposeQueryEx* function because of an unchecked multiplication.
| Software | From | Fixed in |
|---|---|---|
| uriparser_project / uriparser | - | 0.9.0 |
| debian / debian_linux | 8.0 | 8.0.x |