Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jukka Ruohonen

#35708of 53,632
7.5Total CVSS
Vulnerabilities · 1
PT-2008-3662
7.5
2008-05-12
Princeton University · Wordnet · CVE-2008-2149
**Name of the Vulnerable Software and Affected Versions** Wordnet versions 2.0 through 3.0 **Description** A stack-based buffer overflow issue exists in the searchwn function, potentially allowing attackers to execute arbitrary code via a long command line option. This issue is unlikely to cross privilege boundaries, except when Wordnet is used as a back end. **Recommendations** For versions 2.0 through 3.0, consider restricting the use of the searchwn function until a patch is available. As a temporary workaround, avoid using long command line options with the searchwn function to minimize the risk of exploitation.