cbcvebase.
CVE-2005-4268
published 2005-12-15

CVE-2005-4268: Buffer overflow in cpio 2.6-8.FC4 on 64-bit platforms, when creating a cpio archive, allows local users to cause a denial of service (crash) and possibly…

PriorityP414low3.7CVSS 2.0
AVLACHAuNCPIPAP
EPSS
0.54%
42.0th percentile
Buffer overflow in cpio 2.6-8.FC4 on 64-bit platforms, when creating a cpio archive, allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a file whose size is represented by more than 8 digits.

Affected

6 ranges
VendorProductVersion rangeFixed in
debiancpio< cpio 2.6-10 (bookworm)cpio 2.6-10 (bookworm)
gnucpio
gnucpio>= 0 < 2.6-102.6-10
gnucpio>= 0 < 2.6-102.6-10
gnucpio>= 0 < 2.6-102.6-10
gnucpio>= 0 < 2.6-102.6-10

CVSS provenance

nvdv2.03.7LOWAV:L/AC:H/Au:N/C:P/I:P/A:P
osv3.7LOW
vendor_debian3.7MEDIUM
vendor_redhat3.7LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.