[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SA:2009:026 -- SUSE glib2 remote code execution

ID: oval:org.secpod.oval:def:400094Date: (C)2012-01-31   (M)2023-02-20
Class: PATCHFamily: unix




The advisory was resent because the previous one contained the wrong Announcement ID. The code library glib2 provides base64 encoding and decoding functions that are vulnerable to integer overflows when processing very large strings. Processes using this library functions for processing data from the network can be exploited remotely to execute arbitrary code with the privileges of the user running this process.

Platform:
openSUSE 10.3
openSUSE 11.1
openSUSE 11.0
Product:
glib2
Reference:
SUSE-SA:2009:026
CVE-2008-4316
CVE    1
CVE-2008-4316
CPE    3
cpe:/o:opensuse:opensuse:11.1
cpe:/o:opensuse:opensuse:11.0
cpe:/o:opensuse:opensuse:10.3

© SecPod Technologies