Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2001-1413

Опубликовано: 23 дек. 2004
Источник: debian
EPSS Средний

Описание

Stack-based buffer overflow in the comprexx function for ncompress 4.2.4 and earlier, when used in situations that cross security boundaries (such as FTP server), may allow remote attackers to execute arbitrary code via a long filename argument.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ncompressfixed4.2.4-15package

Примечания

  • not vulnerable according to http://web.archive.org/web/20070529152436/http://www.debian.org/security/nonvulns-sarge

  • discussion at:

  • http://archives.neohapsis.com/archives/linux/lsap/2001-q2/0081.html

  • listed sarge version contains a fix like the patch from Gentoo

EPSS

Процентиль: 94%
0.12924
Средний

Связанные уязвимости

ubuntu
больше 20 лет назад

Описание отсутствует

redhat
больше 23 лет назад

Stack-based buffer overflow in the comprexx function for ncompress 4.2.4 and earlier, when used in situations that cross security boundaries (such as FTP server), may allow remote attackers to execute arbitrary code via a long filename argument.

nvd
больше 20 лет назад

Stack-based buffer overflow in the comprexx function for ncompress 4.2.4 and earlier, when used in situations that cross security boundaries (such as FTP server), may allow remote attackers to execute arbitrary code via a long filename argument.

github
около 3 лет назад

Stack-based buffer overflow in the comprexx function for ncompress 4.2.4 and earlier, when used in situations that cross security boundaries (such as FTP server), may allow remote attackers to execute arbitrary code via a long filename argument.

EPSS

Процентиль: 94%
0.12924
Средний