Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Gentoo: 200410-01 Normal: Sharutils Buffer Overflow Threat

gentoo
Calendar Grey October 1, 2004
Dist Gentoo Esm H88
Gentoo GLSA 202312-02 outlines vulnerabilities in the shadow package that may lead to unauthorized privilege escalation and potential system compromise.
sharutils contains two buffer overflow vulnerabilities that could lead to arbitrary code execution.

Summary

Gentoo Linux Security Advisory GLSA 200410-01 https://security.gentoo.org/ Severity: Normal Title: sharutils: Buffer overflows in shar.c and unshar.c Date: October 01, 2004 Bugs: #65773 ID: 200410-01

Synopsis ======= sharutils contains two buffer overflow vulnerabilities that could lead to arbitrary code execution.
Background ========= sharutils contains utilities to manage shell archives.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-arch/sharutils <= 4.2.1-r9 >= 4.2.1-r10
========== sharutils contains two buffer overflows. Ulf Harnhammar discovered a buffer overflow in shar.c, where the length of data returned by the wc command is not checked. Flori...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here