CVE-2012-0806 Information

Description

Buffer overflow in Bip 0.8.8 and earlier might allow remote authenticated users to execute arbitrary code via vectors involving a series of TCP connections that triggers use of many open file descriptors.

Reference

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=657217 http://lists.fedoraproject.org/pipermail/package-announce/2012-February/072752.html http://lists.fedoraproject.org/pipermail/package-announce/2012-February/072767.html http://openwall.com/lists/oss-security/2012/01/24/10 http://openwall.com/lists/oss-security/2012/01/24/4 http://secunia.com/advisories/47679 http://www.mandriva.com/security/advisories?name=MDVSA-2013:063 https://projects.duckcorp.org/issues/269 https://projects.duckcorp.org/projects/bip/repository/revisions/222a33cb84a2e52ad55a88900b7895bf9dd0262c

Share on: