FEDORA-2012-13599Vendor advisory
http://lists.fedoraproject.org/pipermail/package-announce/2012-September/086519.html CVE-2012-4409
mcrypt 2.5.8 - Local Stack Overflow
Record summary
CVE-2012-4409 has a selected CVSS score of 6.8; EIP currently links 2 catalogued exploits.
Description
Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to execute arbitrary code via an encrypted file with a crafted header containing long salt data that is not properly handled during decryption.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBmcrypt 2.5.8 - Local Stack OverflowExploitDB exploitby ToshNot analyzed1 file
ExploitDBmcrypt 2.6.8 - Stack Buffer Overflow (PoC)ExploitDB exploitby _ishikawaNot analyzed1 file
References
10FEDORA-2012-13656Vendor advisory
http://lists.fedoraproject.org/pipermail/package-announce/2012-September/087542.html FEDORA-2012-13657Vendor advisory
http://lists.fedoraproject.org/pipermail/package-announce/2012-September/088281.html packetstormsecurity.org
http://packetstormsecurity.org/files/116268/mcrypt-2.6.8-Buffer-Overflow-Proof-Of-Concept.html 50507Third-party advisory
http://secunia.com/advisories/50507 51010Third-party advisory
http://secunia.com/advisories/51010 [oss-security] 20120906 Re: CVE request - mcrypt buffer overflow flawmailing list
http://www.openwall.com/lists/oss-security/2012/09/06/4 1027532vdb entry
http://www.securitytracker.com/id?1027532 bugzilla.redhat.comConfirmation
https://bugzilla.redhat.com/show_bug.cgi?id=855029 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2012-4409