PT-2003-1052 · Kon · Kon2-Fonts
Published
2003-06-03
·
Updated
2018-10-30
·
CVE-2002-1155
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
kon2-fonts versions 0.3.9b and earlier
Description
The issue is related to a buffer overflow in the KON kon2 package, which can be exploited locally. This can lead to a disruption in the confidentiality, integrity, and availability of protected information. The exploitation can be carried out via a long command line argument.
Recommendations
For versions 0.3.9b and earlier, consider restricting access to the vulnerable package until a patch is available.
As a temporary workaround, avoid using long command line arguments with the KON kon2 package to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Kon2-Fonts