CVE-2018-7485: Unixodbc

Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.

The SQLWriteFileDSN function in odbcinst/SQLWriteFileDSN.c in unixODBC 2.3.5 has strncpy arguments in the wrong order, which allows attackers to cause a denial of service or possibly have unspecified other impact.

Affected products

Published 2018-02-26. Last modified 2026-06-17.