Lucene search

K
freebsdFreeBSDA163BAFF-3FE1-11D9-A9E7-0001020EED82
HistoryNov 09, 2004 - 12:00 a.m.

unarj -- long filename buffer overflow

2004-11-0900:00:00
vuxml.freebsd.org
13

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.1

Percentile

94.9%

Ludwig Nussel has discovered a buffer overflow
vulnerability in unarj’s handling of long filenames which
could potentially lead to execution of arbitrary code with
the permissions of the user running unarj.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchunarj< 2.43_2UNKNOWN

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.1

Percentile

94.9%