Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Gentoo: 200711-18 Normal: Cpio Buffer Overflow Denial of Service

gentoo
Calendar Grey November 14, 2007
Scroller Gentoo
A serious buffer overflow vulnerability in GNU Cpio could lead to Denial of Service (DoS). Essential fixes and implications of these security flaws have been outlined
GNU cpio contains a buffer overflow vulnerability, possibly resulting in a Denial of Service.

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200711-18
                                            https://security.gentoo.org/

Severity: Normal Title: Cpio: Buffer overflow Date: November 14, 2007 Bugs: #196978 ID: 200711-18

Synopsis ======= GNU cpio contains a buffer overflow vulnerability, possibly resulting in a Denial of Service.
Background ========= GNU cpio copies files into or out of a cpio or tar archive.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-arch/cpio < 2.9-r1 >= 2.9-r1
========== A buffer overflow vulnerability in the safer_name_suffix() function in GNU cpio has been discovered.
Impact ===== A remote attacker could entice a user to op...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround