CVE-2013-4385: Call-Cc Chicken
High severity, CVSS 7.5. EPSS: 3.4% chance of exploitation in the next 30 days.
Buffer overflow in the "read-string!" procedure in the "extras" unit in CHICKEN stable before 4.8.0.5 and development snapshots before 4.8.3 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via a "#f" value in the NUM argument.
Affected products
- Call-Cc Chicken: up to and including 4.8.0.4; version 3.0.0 only; version 3.1.0 only; version 3.2.0 only; version 3.3.0 only; version 3.4.0 only; …
Published 2013-10-09. Last modified 2026-06-16.