CVE-2001-0441Improper Restriction of Operations within the Bounds of a Memory Buffer in Linux

5 documents5 sources
Severity
7.5HIGHNVD
EPSS
1.8%
top 17.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 27
Latest updateApr 30

Description

Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages4 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-269v-f6q7-wg8w: Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 02022-04-30
CVEList
CVE-2001-0441: Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 02001-05-24

📋Vendor Advisories

1
Red Hat
security flaw2001-03-09

💬Community

1
Bugzilla
CVE-2001-0441 security flaw2018-08-16
CVE-2001-0441 — Debian Linux vulnerability | cvebase