Описание
An issue was discovered in mgetty before 1.2.1. In contrib/next-login/login.c, the command-line parameter username is passed unsanitized to strcpy(), which can cause a stack-based buffer overflow.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| cosmic | ignored | end of life |
| devel | not-affected | 1.2.1-1 |
| disco | not-affected | 1.2.1-1 |
| eoan | not-affected | 1.2.1-1 |
| esm-apps-legacy/xenial | needs-triage | |
| esm-apps/bionic | needs-triage | |
| esm-apps/focal | not-affected | 1.2.1-1 |
| esm-apps/jammy | not-affected | 1.2.1-1 |
| esm-apps/noble | not-affected | 1.2.1-1 |
Показывать по
4.6 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
An issue was discovered in mgetty before 1.2.1. In contrib/next-login/login.c, the command-line parameter username is passed unsanitized to strcpy(), which can cause a stack-based buffer overflow.
An issue was discovered in mgetty before 1.2.1. In contrib/next-login/login.c, the command-line parameter username is passed unsanitized to strcpy(), which can cause a stack-based buffer overflow.
An issue was discovered in mgetty before 1.2.1. In contrib/next-login/ ...
An issue was discovered in mgetty before 1.2.1. In contrib/next-login/login.c, the command-line parameter username is passed unsanitized to strcpy(), which can cause a stack-based buffer overflow.
4.6 Medium
CVSS2
7.8 High
CVSS3