Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Linux-ATM LES Command Line Argument Buffer Overflow Vulnerability

The linux-atm 'les' executable has been reported prone to a buffer overflow vulnerability.

This issue is due to a lack of sufficient bounds checking performed on data supplied via specific command line arguments to the 'les' executable. Excessive data may overrun the bounds of an internal memory buffer and corrupt adjacent memory. As a direct result of this issue arbitrary code execution is possible.

Although this vulnerability reportedly affects linux-atm 2.4.0, previous versions may also be affected.







 

Privacy Statement
Copyright 2008, SecurityFocus