Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

GNU GNATS Environment Variable Buffer Overflow Vulnerability

It has been reported that GNATS is prone to a buffer overflow condition when parsing certain environment variables.

An attacker can exploit this vulnerability by setting an overly long environment variable and invoking one of several GNATS utilities. This will trigger the overflow condition and will result in the corruption of sensitive memory.

Successful exploitation may result in the execution of attacker-supplied code with elevated privileges.







 

Privacy Statement
Copyright 2009, SecurityFocus