CVE-2005-0160
published 2005-02-22CVE-2005-0160: Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary code via (1) 2 overflows in ACE archives, (2) a long command line argument, or (3)…
PriorityP422medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
3.24%
86.7th percentile
Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary code via (1) 2 overflows in ACE archives, (2) a long command line argument, or (3) certain "Ready for next volume" messages.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | unace | < unace 1.2b-3 (bookworm) | unace 1.2b-3 (bookworm) |
| e-merge | unace | — | — |
| e-merge | unace | >= 0 < 1.2b-3 | 1.2b-3 |
| e-merge | unace | >= 0 < 1.2b-3 | 1.2b-3 |
| e-merge | unace | >= 0 < 1.2b-3 | 1.2b-3 |
| e-merge | unace | >= 0 < 1.2b-3 | 1.2b-3 |
CVSS provenance
nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
osv5.1MEDIUM
vendor_debian5.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2005-0160: unace - Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary cod...
vendor_debian·2005·CVSS 5.1
CVE-2005-0160 [MEDIUM] CVE-2005-0160: unace - Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary cod...
Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary code via (1) 2 overflows in ACE archives, (2) a long command line argument, or (3) certain "Ready for next volume" messages.
Scope: local
bookworm: resolved (fixed in 1.2b-3)
bullseye: resolved (fixed in 1.2b-3)
forky: resolved (fixed in 1.2b-3)
sid: resolved (fixed in 1.2b-3)
trixie: resolved (fixed in 1.2b-3)
GHSA
GHSA-gjq2-qj9q-x939: Multiple buffer overflows in unace 1
ghsa_unreviewed·2022-05-01
CVE-2005-0160 [MEDIUM] GHSA-gjq2-qj9q-x939: Multiple buffer overflows in unace 1
Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary code via (1) 2 overflows in ACE archives, (2) a long command line argument, or (3) certain "Ready for next volume" messages.
OSV
CVE-2005-0160: Multiple buffer overflows in unace 1
osv·2005-02-22·CVSS 5.1
CVE-2005-0160 [MEDIUM] CVE-2005-0160: Multiple buffer overflows in unace 1
Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary code via (1) 2 overflows in ACE archives, (2) a long command line argument, or (3) certain "Ready for next volume" messages.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.grok.org.uk/pipermail/full-disclosure/2005-February/031908.htmlhttp://secunia.com/advisories/14359http://www.kb.cert.org/vuls/id/215006http://www.novell.com/linux/security/advisories/2005_16_sr.htmlhttp://www.securityfocus.com/bid/12630http://lists.grok.org.uk/pipermail/full-disclosure/2005-February/031908.htmlhttp://secunia.com/advisories/14359http://www.kb.cert.org/vuls/id/215006http://www.novell.com/linux/security/advisories/2005_16_sr.htmlhttp://www.securityfocus.com/bid/12630
2005-02-22
Published