PT-2014-2580 · Alt Linux Team+2 · Alt Linux+1

Published

2014-06-02

·

Updated

2025-07-08

·

CVE-2013-2298

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions BOINC versions 7.x ALT Linux (affected versions not specified)
Description The issue is related to multiple stack-based buffer overflows in the XML parser, which can be triggered by a crafted XML file. This is associated with the scheduler component. The estimated number of potentially affected devices and details about real-world incidents are not provided.
Recommendations For BOINC versions 7.x, update to a version that fixes the XML parser issue. For ALT Linux, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1254
CVE-2013-2298
MGASA-2014-0460

Affected Products

Alt Linux
Boinc