Jump to content

Advisories MDKSA-2007:067: Updated file packages fix heap-based buffer overflow vulnerability


paul
 Share

Recommended Posts

Jean-Sebastien Guay-Leroux discovered an integer underflow in the

file_printf() function in file prior to 4.20 that allows user-assisted

attackers to execute arbitrary code via a file that triggers a

heap-based buffer overflow.

 

Updated packages have been patched to address this issue.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...