{"id":"AZL-74790","summary":"CVE-2025-15536 affecting package opencc 1.1.1-3","details":"A weakness has been identified in BYVoid OpenCC up to 1.1.9. This vulnerability affects the function opencc::MaxMatchSegmentation of the file src/MaxMatchSegmentation.cpp. This manipulation causes heap-based buffer overflow. The attack is restricted to local execution. The exploit has been made available to the public and could be used for attacks. Patch name: 345c9a50ab07018f1b4439776bad78a0d40778ec. To fix this issue, it is recommended to deploy a patch.","modified":"2026-04-21T04:38:47.877420Z","published":"2026-01-18T09:15:46Z","upstream":["CVE-2025-15536"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-15536"}],"affected":[{"package":{"name":"opencc","ecosystem":"Azure Linux:2","purl":"pkg:rpm/azure-linux/opencc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"1.1.1-3"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-74790.json"}}],"schema_version":"1.7.5"}