Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-1391

Опубликовано: 27 мар. 2008
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 7.5

Описание

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary code via large values of certain integer fields in the format argument to (1) the strfmon function in lib/libc/stdlib/strfmon.c, related to the GET_NUMBER macro; and (2) the printf function, related to left_prec and right_prec.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

2.11.1-0ubuntu5
hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

released

2.10.1-0ubuntu17
lucid

not-affected

2.11.1-0ubuntu5
upstream

needed

Показывать по

РелизСтатусПримечание
dapper

released

2.3.6-0ubuntu20.6
devel

DNE

hardy

released

2.7-10ubuntu6
intrepid

ignored

end of life, was needed
jaunty

released

2.9-4ubuntu6.2
karmic

DNE

lucid

DNE

upstream

needed

Показывать по

EPSS

Процентиль: 95%
0.20122
Средний

7.5 High

CVSS2

Связанные уязвимости

redhat
около 17 лет назад

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary code via large values of certain integer fields in the format argument to (1) the strfmon function in lib/libc/stdlib/strfmon.c, related to the GET_NUMBER macro; and (2) the printf function, related to left_prec and right_prec.

nvd
около 17 лет назад

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary code via large values of certain integer fields in the format argument to (1) the strfmon function in lib/libc/stdlib/strfmon.c, related to the GET_NUMBER macro; and (2) the printf function, related to left_prec and right_prec.

debian
около 17 лет назад

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, ...

github
около 3 лет назад

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary code via large values of certain integer fields in the format argument to (1) the strfmon function in lib/libc/stdlib/strfmon.c, related to the GET_NUMBER macro; and (2) the printf function, related to left_prec and right_prec.

fstec
больше 10 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 95%
0.20122
Средний

7.5 High

CVSS2

Уязвимость CVE-2008-1391