LibYAML 'scanner.c' Remote Heap Based Buffer Overflow Vulnerability

Bugtraq ID: 65258
Class: Input Validation Error
CVE: CVE-2013-6393
Remote: Yes
Local: No
Published: Jan 29 2014 12:00AM
Updated: Apr 17 2014 12:22AM
Credit: Florian Weimer, Red Hat Security Response Team.
Vulnerable: Ubuntu Ubuntu Linux 12.04 LTS i386
Ubuntu Ubuntu Linux 12.04 LTS amd64
Puppet Labs Puppet Enterprise 2.5.1
Puppet Labs Puppet Enterprise 2.0.3
Puppet Labs Puppet Enterprise 2.0.2
Puppet Labs Puppet Enterprise 2.6
Puppet Labs Puppet Enterprise 1.2
Puppet Labs Puppet Enterprise 1.1
Puppet Labs Puppet Enterprise 1.0
Puppet Labs Puppet Enterprise 2.0
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Gentoo Linux
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable: SuSE openSUSE 11.4


 

Privacy Statement
Copyright 2010, SecurityFocus