In btor2parser/btor2parser.c in Boolector Btor2Tools before 2019-01-15, opening a specially crafted input file leads to an out of bounds write in pusht_bfr.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7559
Reference (s):
- https://github.com/Boolector/boolector/issues/30