20031006 SA-20031006 slocate vulnerabilitymailing list
http://marc.info/?l=bugtraq&m=106546447321274&w=2 CVE-2003-0848
SLocate 2.6 - User-Supplied Database Heap Overflow
Record summary
CVE-2003-0848 has a selected CVSS score of 4.6; EIP currently links 1 catalogued exploit.
Description
Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileges via a modified slocate database that causes a negative "pathlen" value to be used.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSLocate 2.6 - User-Supplied Database Heap OverflowExploitDB exploitby Patrik HornikNot analyzed1 file
References
Showing 12 of 2120031011 SA-20031006 slocate buffer overflow - exploitation proofmailing list
http://marc.info/?l=bugtraq&m=106589631819348&w=2 RHSA-2004:040Vendor advisory
http://rhn.redhat.com/errata/RHSA-2004-040.html 10670Third-party advisory
http://secunia.com/advisories/10670 10683Third-party advisory
http://secunia.com/advisories/10683 10686Third-party advisory
http://secunia.com/advisories/10686 10698Third-party advisory
http://secunia.com/advisories/10698 10702Third-party advisory
http://secunia.com/advisories/10702 10720Third-party advisory
http://secunia.com/advisories/10720 10722Third-party advisory
http://secunia.com/advisories/10722 9962Third-party advisory
http://secunia.com/advisories/9962 DSA-428Vendor advisory
http://www.debian.org/security/2004/dsa-428