Description: The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable. Broken commit info: Bugfix commit info: https://sourceware.org/git/?p=glibc.git;a=commit;h=89ce64b269a897a7780e4c73a7412016381c6ecf https://sourceware.org/git/?p=glibc.git;a=commit;h=31da30f23cddd36db29d5b6a1c7619361b271fb4 https://sourceware.org/git/?p=glibc.git;a=commit;h=f9dc609e06b1136bb0408be9605ce7973a767ada https://sourceware.org/git?p=glibc.git;a=commit;h=f9dc609e06b1136bb0408be9605ce7973a767ada https://sourceware.org/git/?p=glibc.git;a=commit;h=e1135387deded5d73924f6ca20c72a35dc8e1bda https://sourceware.org/git/?p=glibc.git;a=commit;h=ed4f16ff6bed3037266f1fa682ebd32a18fce29c https://sourceware.org/git/?p=glibc.git;a=commit;h=36280d1ce5e245aabefb877fe4d3c6cff95dabfa https://sourceware.org/git/?p=glibc.git;a=commit;h=4ed98540a7fd19f458287e783ae59c41e64df7b5 https://sourceware.org/git/?p=glibc.git;a=commit;h=a8b0561db4b9847ebfbfec20075697d5492a363c