Releases601
Frequency2 weeks 2 days
Last Release
Stars3.5K
The home of the ICU project source code.

CVE History

CVEPublishedCVSS v3CVSS v2
5.5 MEDIUM4.3 MEDIUM

International Components for Unicode (ICU-20850) v66.1 was discovered to contain a use after free bug in the pkg_createWithAssemblyCode function in the file tools/pkgdata/pkgdata.cpp.

8.8 HIGH6.8 MEDIUM

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

7.5 HIGH

International Components for Unicode (ICU) for C/C++ 63.1 has an integer overflow in number::impl::DecimalQuantity::toScientificString() in i18n/number_decimalquantity.cpp.