PT-2007-5181 · Fsplib · Fsplib

Publicado

2007-07-25

·

Atualizado

2008-11-15

·

CVE-2007-3961

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: fsplib versions prior to 0.9
Description: The issue is caused by an off-by-one error in the fsp readdir r function, which can lead to a denial of service when encountering a directory entry with a length of exactly MAXNAMELEN, preventing a terminating null byte from being added.
Recommendations: For versions prior to 0.9, update to version 0.9 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-3961

Produtos afetados

Fsplib