Lucene search

K
cvelistMitreCVELIST:CVE-2005-4784
HistoryApr 14, 2006 - 10:00 a.m.

CVE-2005-4784

2006-04-1410:00:00
mitre
www.cve.org
2
buffer overflow
posix readdir_r
denial of service
arbitrary code
symlink attack
race condition
filesystem
struct dirent
solaris
beos
gcj
kde
libwww
rudiments library
tetex
xmail
bfbtester
ncftp
netwib
openoffice.org
pike
reprepro
tcl
xgsmlib

AI Score

7.6

Confidence

High

EPSS

0

Percentile

10.2%

Multiple buffer overflows in the POSIX readdir_r function, as used in multiple packages, allow local users to cause a denial of service and possibly execute arbitrary code via (1) a symlink attack that exploits a race condition between opendir and pathcon calls and changes the filesystem to one with a larger maximum directory-entry name length, or (2) possibly via programmer-introduced errors on operating systems with a small struct dirent, such as Solaris or BeOS, as demonstrated in packages including (a) gcj, (b) KDE, © libwww, (d) the Rudiments library, (e) teTeX, (f) xmail, (g) bfbtester, (h) ncftp, (i) netwib, (j) OpenOffice.org, (k) Pike, (l) reprepro, (m) Tcl, and (n) xgsmlib.

AI Score

7.6

Confidence

High

EPSS

0

Percentile

10.2%

Related for CVELIST:CVE-2005-4784