CVE-2007-5037 Information

Description

Buffer overflow in the inotifytools_snprintf function in src/inotifytools.c in the inotify-tools library before 3.11 allows context-dependent attackers to execute arbitrary code via a long filename.

Reference

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=443913 http://osvdb.org/40563 http://secunia.com/advisories/26825 http://secunia.com/advisories/27616 http://secunia.com/advisories/28221 http://sourceforge.net/project/shownotes.php?release_id=540277&group_id=171752 http://www.debian.org/security/2007/dsa-1440 http://www.securityfocus.com/bid/25724 https://exchange.xforce.ibmcloud.com/vulnerabilities/36687 https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00228.html

Share on: