PT-2004-1021 · Unknown · Lbreakout2

Published

2004-03-10

·

Updated

2017-07-11

·

CVE-2004-0158

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions lbreakout2 (affected versions not specified)
Description The issue concerns a buffer overflow in lbreakout2, allowing local users to gain 'games' group privileges. This can be achieved by setting a large HOME environment variable, affecting various components such as editor.c, theme.c, manager.c, config.c, game.c, levels.c, or main.c. Additionally, there are multiple vulnerabilities in the lbreakout2 package that can lead to breaches of confidentiality, integrity, and availability of protected information, potentially exploitable by local attackers.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-03021
CVE-2004-0158
DSA-445

Affected Products

Lbreakout2