IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.
Using realloc() to resize buffers that store sensitive information can leave the sensitive information exposed to attack, because it is not removed from memory.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Concert | Ibm | 1.0.0 (including) | 2.0.0 (excluding) |