{"id":"CVE-2018-16982","aliases":["GHSA-9qh2-6fxg-9m4g"],"url":"https://o3.security/vulnerability/CVE-2018-16982","summary":"Open Chinese Convert subject to Denial of Service via Out-of-bounds Read","details":"Open Chinese Convert (OpenCC) 1.0.5 allows attackers to cause a denial of service (segmentation fault) because BinaryDict::NewFromFile in BinaryDict.cpp may have out-of-bounds keyOffset and valueOffset values via a crafted .ocd file.","published":"2018-09-13T02:29:00.237Z","modified":"2026-07-08T15:10:32.983353Z","cvss":{"score":5.5,"severity":"MEDIUM","vector":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"npm","name":"opencc","fixedVersion":"1.1.2"}],"fix":{"url":"https://github.com/BYVoid/OpenCC/pull/309","label":"BYVoid/OpenCC#309"},"references":[{"type":"EVIDENCE","url":"https://github.com/BYVoid/OpenCC/issues/303"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-16982"},{"type":"WEB","url":"https://github.com/BYVoid/OpenCC/pull/309"},{"type":"WEB","url":"https://github.com/BYVoid/OpenCC/pull/560"},{"type":"WEB","url":"https://github.com/BYVoid/OpenCC/pull/560/commits/e1b8c7949738100e4747dd4109ef1f16e1bd99c4"},{"type":"WEB","url":"https://github.com/BYVoid/OpenCC/commit/4a4f9e58e505fca93605f22363c133df66a91a5e"},{"type":"PACKAGE","url":"https://github.com/BYVoid/OpenCC"},{"type":"WEB","url":"https://github.com/pypa/advisory-database/tree/main/vulns/opencc-py/PYSEC-2018-153.yaml"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-08T15:10:32.983353Z"}}