Lucene search

K
freebsdFreeBSDDC930435-D59F-11DA-8098-00123FFE8333
HistoryApr 14, 2006 - 12:00 a.m.

amaya -- Attribute Value Buffer Overflow Vulnerabilities

2006-04-1400:00:00
vuxml.freebsd.org
15

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

EPSS

0.207

Percentile

96.4%

Secunia reports:

Amaya have two vulnerabilities, which can be exploited by
malicious people to compromise a user’s system.
The vulnerabilities are caused due to boundary errors within the
parsing of various attribute values. This can be exploited to cause
stack-based buffer overflows when a user opens a specially crafted
HTML document containing certain tags with overly long attribute
values.
Successful exploitation allows execution of arbitrary code.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchamaya< 9.5UNKNOWN

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

EPSS

0.207

Percentile

96.4%

Related for DC930435-D59F-11DA-8098-00123FFE8333