Launchpad.net

CVE 2019-16239

process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encoding with crafted chunk sizes.

See the CVE page on Mitre.org for more details.