Описание
The find_option function in option.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| ledger | fixed | 3.1.2+dfsg1-1 | package | |
| ledger | no-dsa | stretch | package | |
| ledger | no-dsa | jessie | package | |
| ledger | no-dsa | wheezy | package |
Примечания
http://bugs.ledger-cli.org/show_bug.cgi?id=1222
https://github.com/ledger/ledger/issues/1222
https://github.com/ledger/ledger/commit/c5343f18744d0f6fddcc590f9a54c23674d8c489
Связанные уязвимости
The find_option function in option.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
The find_option function in option.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
The find_option function in option.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.