Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Ext2 Filesystem Utilities e2fsprogs libext2fs Multiple Unspecified Integer Overflow Vulnerabilities

The 'e2fsprogs' package is prone to multiple unspecified integer-overflow vulnerabilities because the application fails to bounds-check user-supplied data before copying it into an insufficiently sized buffer.

An attacker can exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial of service.

These issues affect e2fsprogs 1.38 through 1.40.2; other versions may also be affected.







 

Privacy Statement
Copyright 2008, SecurityFocus