PT-2019-15998 · Nethack · Nethack

Reiner Herrmann

·

Publicado

2019-12-19

·

Atualizado

2021-02-10

·

CVE-2019-19905

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NetHack versions 3.6.x through 3.6.3
Description The issue arises from a buffer overflow when reading very long lines from configuration files. This affects systems with NetHack installed suid/sgid and shared systems where users can upload their own configuration files.
Recommendations For versions 3.6.x through 3.6.3, update to version 3.6.4 or later to resolve the issue.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-19905
GHSA-3CM7-RGH5-9PQ5
MGASA-2021-0077

Produtos afetados

Nethack