22787Third-party advisory
http://secunia.com/advisories/22787 CVE-2006-5864
Evince Document Viewer - 'DocumentMedia' Remote Buffer Overflow
Record summary
CVE-2006-5864 has a selected CVSS score of 5.1; EIP currently links 1 catalogued exploit.
Description
Stack-based buffer overflow in the ps_gettext function in ps.c for GNU gv 3.6.2, and possibly earlier versions, allows user-assisted attackers to execute arbitrary code via a PostScript (PS) file with certain headers that contain long comments, as demonstrated using the (1) DocumentMedia, (2) DocumentPaperSizes, and possibly (3) PageMedia and (4) PaperSize headers. NOTE: this issue can be exploited through other products that use gv such as evince.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBEvince Document Viewer - 'DocumentMedia' Remote Buffer OverflowExploitDB exploitby K-sPecialNot analyzed1 file
References
Showing 12 of 4022932Third-party advisory
http://secunia.com/advisories/22932 23006Third-party advisory
http://secunia.com/advisories/23006 23018Third-party advisory
http://secunia.com/advisories/23018 23111Third-party advisory
http://secunia.com/advisories/23111 23118Third-party advisory
http://secunia.com/advisories/23118 23183Third-party advisory
http://secunia.com/advisories/23183 23266Third-party advisory
http://secunia.com/advisories/23266 23306Third-party advisory
http://secunia.com/advisories/23306 23335Third-party advisory
http://secunia.com/advisories/23335 23353Third-party advisory
http://secunia.com/advisories/23353 23409Third-party advisory
http://secunia.com/advisories/23409