CVE-2013-2075: Call-Cc Chicken

High severity, CVSS 8.8. EPSS: 2.2% chance of exploitation in the next 30 days.

Multiple buffer overflows in the (1) R5RS char-ready, (2) tcp-accept-ready, and (3) file-select procedures in Chicken through 4.8.0.3 allows attackers to cause a denial of service (crash) by opening a file descriptor with a large integer value. NOTE: this issue exists because of an incomplete fix for CVE-2012-6122.

Affected products

  • Call-Cc Chicken: up to and including 4.8.0.3

Published 2019-10-31. Last modified 2026-06-16.