Stack-based buffer overflow in the vgasco_printf function in Jan Kybic BitMap Viewer (BMV) 1.2, when compiled with the M_UNIX flag and running setuid, allows local users to gain privileges via a long filename in the -b command line option.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://felinemenace.org/advisories/bmv_advisory.txt |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-10-23T04:00:00Z
Updated: 2024-09-16T19:25:06.743Z
Reserved: 2005-10-23T00:00:00Z
Link: CVE-2005-3279
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2005-10-23T10:02:00.000
Modified: 2008-09-05T20:53:57.107
Link: CVE-2005-3279
Redhat
No data.