CVE-2007-1397

Fish - Buffer Overflow

Title source: rule

Description

Multiple stack-based buffer overflows in the (1) ExtractRnick and (2) decrypt_topic_332 functions in FiSH allow remote attackers to execute arbitrary code via long strings.

Exploits (2)

exploitdb WORKING POC VERIFIED
by ilja van sprundel · perldoswindows
https://www.exploit-db.com/exploits/29721
exploitdb WORKING POC
by Caleb James DeLisle · perlremotelinux
https://www.exploit-db.com/exploits/17181

Scores

EPSS 0.2946
EPSS Percentile 96.6%

Details

Status published
Products (1)
fish/fish (3 CPE variants)
Published Mar 10, 2007
Tracked Since Feb 18, 2026