{"id":"CVE-2018-7485","details":"The SQLWriteFileDSN function in odbcinst/SQLWriteFileDSN.c in unixODBC 2.3.5 has strncpy arguments in the wrong order, which allows attackers to cause a denial of service or possibly have unspecified other impact.","modified":"2026-05-17T11:55:13.693004375Z","published":"2018-02-26T14:29:00.383Z","related":["SUSE-SU-2018:1832-1","openSUSE-SU-2024:11483-1"],"database_specific":{},"references":[{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/103193"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:2336"},{"type":"FIX","url":"https://github.com/lurcher/unixODBC/commit/45ef78e037f578b15fc58938a3a3251655e71d6f#diff-d52750c7ba4e594410438569d8e2963aL24"}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}