[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4095-1 gcab -- gcab

ID: oval:org.secpod.oval:def:603249Date: (C)2018-02-05   (M)2023-12-20
Class: PATCHFamily: unix




It was discovered that gcab, a Microsoft Cabinet file manipulation tool, is prone to a stack-based buffer overflow vulnerability when extracting .cab files. An attacker can take advantage of this flaw to cause a denial-of-service or, potentially the execution of arbitrary code with the privileges of the user running gcab, if a specially crafted .cab file is processed.

Platform:
Debian 9.x
Product:
gir1.2-libgcab-1.0
libgcab-doc
libgcab-dev
libgcab-1.0-0
gcab
Reference:
DSA-4095-1
CVE-2018-5345
CVE    1
CVE-2018-5345
CPE    3
cpe:/o:debian:debian_linux:9.0
cpe:/a:gnome:gcab
cpe:/o:debian:debian_linux:9.x

© SecPod Technologies