RSS   Vulnerabilities for 'Gnustep base'   RSS

2010-05-12
 
CVE-2010-1620

 

 
Integer overflow in the load_iface function in Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 might allow context-dependent attackers to execute arbitrary code via a (1) file or (2) socket that provides configuration data with many entries, leading to a heap-based buffer overflow.

 
 
CVE-2010-1457

CWE-200
 

 
Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 allows local users to read arbitrary files via a (1) -c or (2) -a option, which prints file contents in an error message.

 

 >>> Vendor: Gnustep 2 Products
BASE
Gnustep base


Copyright 2024, cxsecurity.com

 

Back to Top