Heap-based buffer overflow in less in Red Hat Enterprise Linux 3 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted file, as demonstrated using the UTF-8 locale.
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11027
https://exchange.xforce.ibmcloud.com/vulnerabilities/19131
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=145527