bugs.gentoo.orgConfirmation
http://bugs.gentoo.org/show_bug.cgi?id=196978 CVE-2007-4476
GNU TAR 1.15.91 / CPIO 2.5.90 - 'safer_name_suffix' Remote Denial of Service
Record summary
CVE-2007-4476 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "crashing stack."
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBGNU TAR 1.15.91 / CPIO 2.5.90 - 'safer_name_suffix' Remote Denial of ServiceExploitDB exploitby Dmitry V. LevinNot analyzed1 file
References
Showing 12 of 38kb.juniper.netConfirmation
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10691 kb.juniper.netConfirmation
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705 26674Third-party advisory
http://secunia.com/advisories/26674 26987Third-party advisory
http://secunia.com/advisories/26987 27331Third-party advisory
http://secunia.com/advisories/27331 27453Third-party advisory
http://secunia.com/advisories/27453 27514Third-party advisory
http://secunia.com/advisories/27514 27681Third-party advisory
http://secunia.com/advisories/27681 27857Third-party advisory
http://secunia.com/advisories/27857 28255Third-party advisory
http://secunia.com/advisories/28255 29968Third-party advisory
http://secunia.com/advisories/29968