Stack-based buffer overflow in the vgasco_printf function in Jan Kybic BitMap Viewer (BMV) 1.2, when compiled with the M_UNIX flag and running setuid, allows local users to gain privileges via a long filename in the -b command line option.
References
| Link | Resource |
|---|---|
| http://felinemenace.org/advisories/bmv_advisory.txt | Vendor Advisory |
Configurations
Information
Published : 2005-10-23 10:02
Updated : 2008-09-05 20:53
NVD link : CVE-2005-3279
Mitre link : CVE-2005-3279
JSON object : View
Products Affected
jan_kybic
- bitmap_viewer
CWE
