tigger.uic.edu
http://tigger.uic.edu/~jlongs2/holes/chbg.txt CVE-2004-1264
ChBg 1.5 - Scenario File Overflow
Record summary
CVE-2004-1264 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the simplify_path function in config.c for ChBg 1.5 allows remote attackers to execute arbitrary code via a crafted chbg scenario file.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBChBg 1.5 - Scenario File OverflowExploitDB exploitby Danny LungstromNot analyzed1 file
References
5DSA-644Vendor advisory
http://www.debian.org/security/2005/dsa-644 MDKSA-2005:027Vendor advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2005:027 chbg-simplifypath-bo(18595)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/18595 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-1264