PT-2007-3777 · Gnu · Gnu Findutils

Publicado

2007-06-04

·

Atualizado

2024-06-15

·

CVE-2007-2452

CVSS v2.0

6.0

Média

VetorAV:N/AC:M/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions GNU findutils versions prior to 4.2.31
Description A heap-based buffer overflow issue exists in the visit old format function in locate/locate.c, potentially allowing attackers to execute arbitrary code via a long pathname in a locate database with the old format.
Recommendations For GNU findutils versions prior to 4.2.31, update to version 4.2.31 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-2452
OPENSUSE-SU-2024:10758-1

Produtos afetados

Gnu Findutils