Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-5029

Опубликовано: 02 мая 2013
Источник: debian

Описание

Integer overflow in the __tzfile_read function in glibc before 2.15 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted timezone (TZ) file, as demonstrated using vsftpd.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
eglibcfixed2.13-24package
eglibcfixed2.11.3-3squeezepackage
glibcfixed2.13-24package

Примечания

  • http://support.novell.com/security/cve/CVE-2009-5029.html

  • https://bugzilla.suse.com/show_bug.cgi?id=735850

Связанные уязвимости

ubuntu
около 12 лет назад

Integer overflow in the __tzfile_read function in glibc before 2.15 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted timezone (TZ) file, as demonstrated using vsftpd.

redhat
около 16 лет назад

Integer overflow in the __tzfile_read function in glibc before 2.15 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted timezone (TZ) file, as demonstrated using vsftpd.

nvd
около 12 лет назад

Integer overflow in the __tzfile_read function in glibc before 2.15 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted timezone (TZ) file, as demonstrated using vsftpd.

github
около 3 лет назад

Integer overflow in the __tzfile_read function in glibc before 2.15 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted timezone (TZ) file, as demonstrated using vsftpd.

oracle-oval
больше 13 лет назад

ELSA-2012-0058: glibc security and bug fix update (MODERATE)