{"id":"DEBIAN-CVE-2023-49287","details":"TinyDir is a lightweight C directory and file reader. Buffer overflows in the `tinydir_file_open()` function. This vulnerability has been patched in version 1.2.6.","modified":"2026-09-15T09:02:32.888265013Z","published":"2023-12-04T06:15:07.173Z","upstream":["CVE-2023-49287"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-49287"}],"affected":[{"package":{"name":"falcosecurity-libs","ecosystem":"Debian:12","purl":"pkg:deb/debian/falcosecurity-libs?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["0.1.1dev+git20220316.e5c53d64-5.1","0.11.3+repack-1","0.11.3+repack-2","0.11.3+repack-3","0.11.3+repack-4","0.11.3+repack-5","0.11.3+repack-6","0.14.1-1","0.14.1-2","0.14.1-3","0.14.1-3.1~exp1","0.14.1-4","0.14.1-5","0.14.1-5.1","0.15.1-1","0.15.1-2","0.15.1-3","0.15.1-4","0.18.1-1","0.18.1-2","0.20.0-1","0.20.0-2","0.20.0-3","0.20.0-4","0.20.0-4.1","0.23.2-1","0.23.2-2","0.23.2-3","0.23.2-4"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-49287.json"}},{"package":{"name":"falcosecurity-libs","ecosystem":"Debian:13","purl":"pkg:deb/debian/falcosecurity-libs?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.14.1-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-49287.json"}},{"package":{"name":"falcosecurity-libs","ecosystem":"Debian:14","purl":"pkg:deb/debian/falcosecurity-libs?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.14.1-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-49287.json"}},{"package":{"name":"gemmi","ecosystem":"Debian:12","purl":"pkg:deb/debian/gemmi?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["0.5.7+ds-2","0.5.8+ds-1","0.6.0+ds-1","0.6.1+ds-1","0.6.2+ds-1","0.6.2+ds-2","0.6.2+ds-3","0.6.2+ds-4","0.6.2+ds-5","0.6.3+ds-1","0.6.4+ds-1","0.6.5+ds-1","0.6.5+ds-2","0.6.5+ds-3","0.7.1+ds-1","0.7.1+ds-1~exp1","0.7.1+ds-2","0.7.4+ds-1","0.7.4+ds-1~exp1","0.7.5+ds-1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-49287.json"}},{"package":{"name":"gemmi","ecosystem":"Debian:13","purl":"pkg:deb/debian/gemmi?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.6.4+ds-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-49287.json"}},{"package":{"name":"gemmi","ecosystem":"Debian:14","purl":"pkg:deb/debian/gemmi?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.6.4+ds-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-49287.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}