PT-2003-1052 · Kon · Kon2-Fonts

Published

2003-06-03

·

Updated

2018-10-30

·

CVE-2002-1155

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions kon2-fonts versions 0.3.9b and earlier
Description The issue is related to a buffer overflow in the KON kon2 package, which can be exploited locally. This can lead to a disruption in the confidentiality, integrity, and availability of protected information. The exploitation can be carried out via a long command line argument.
Recommendations For versions 0.3.9b and earlier, consider restricting access to the vulnerable package until a patch is available. As a temporary workaround, avoid using long command line arguments with the KON kon2 package to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-07805
BDU:2015-07806
CVE-2002-1155

Affected Products

Kon2-Fonts