Multiple vulnerabilities in fliccd, when installed setuid root as part of the kdeedu Kstars support for Instrument Neutral Distributed Interface (INDI) in KDE 3.3 to 3.3.2, allow local users and remote attackers to execute arbitrary code via stack-based buffer overflows.
References
Link | Resource |
---|---|
http://secunia.com/advisories/14306 | Patch |
http://www.gentoo.org/security/en/glsa/glsa-200502-23.xml | Vendor Advisory |
http://www.kde.org/info/security/advisory-20050215-1.txt | Patch Vendor Advisory |
http://www.redhat.com/archives/fedora-announce-list/2005-February/msg00044.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2005-02-16T05:00:00
Updated: 2005-02-20T10:00:00
Reserved: 2005-01-04T00:00:00
Link: CVE-2005-0011
JSON object: View
NVD Information
Status : Analyzed
Published: 2005-05-02T04:00:00.000
Modified: 2008-09-05T20:45:05.077
Link: CVE-2005-0011
JSON object: View
Redhat Information
No data.
CWE