Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-0235
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-0235

Description:
Stack-based buffer overflow in the glibtop_get_proc_map_s function in libgtop before 2.14.6 (libgtop2) allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a process with a long filename that is mapped in its address space, which triggers the overflow in gnome-system-monitor.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/31522

UBUNTU
  http://www.ubuntu.com/usn/usn-407-1

ST
  1018526

SAID
  Secunia Advisory: SA24015
  Secunia Advisory: SA26367
  Secunia Advisory: SA23840
  Secunia Advisory: SA23736
  Secunia Advisory: SA23777
  Secunia Advisory: SA23814
  Secunia Advisory: SA23872

REDHAT
  http://www.redhat.com/support/errata/RHSA-2007-0765.html

OSVDB
  32815

MISC

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2007:023

GENTOO
  http://security.gentoo.org/glsa/glsa-200701-17.xml

DEBIAN
  http://www.debian.org/security/2007/dsa-1255

CONFIRM
  http://ftp.gnome.org/pub/gnome/sources/libgtop/2.14/libgtop-2.14.6.news
  http://bugzilla.gnome.org/show_bug.cgi?id=396477

BID
  22054


Return to the previous page.