Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-2905
HistorySep 29, 2009 - 12:00 a.m.

CVE-2009-2905

2009-09-2900:00:00
ubuntu.com
ubuntu.com
6

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

EPSS

0

Percentile

10.1%

Heap-based buffer overflow in textbox.c in newt 0.51.5, 0.51.6, and 0.52.2
allows local users to cause a denial of service (application crash) or
possibly execute arbitrary code via a request to display a crafted text
dialog box.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchnewt< 0.51.6-31ubuntu1.1UNKNOWN
ubuntu8.04noarchnewt< 0.52.2-11.2ubuntu1.1UNKNOWN
ubuntu8.10noarchnewt< 0.52.2-11.3ubuntu1.1UNKNOWN
ubuntu9.04noarchnewt< 0.52.2-11.3ubuntu3.1UNKNOWN

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

EPSS

0

Percentile

10.1%