4.6

CVE-2002-0838

Exploit
Buffer overflow in (1) gv 3.5.8 and earlier, (2) gvv 1.0.2 and earlier, (3) ggv 1.99.90 and earlier, (4) gnome-gv, and (5) kghostview in kdegraphics 2.2.2 and earlier, allows attackers to execute arbitrary code via a malformed (a) PDF or (b) PostScript file, which is processed by an unsafe call to sscanf.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GgvGgv Version1.0.2
GhostviewGhostview Version1.3
GhostviewGhostview Version1.4
GhostviewGhostview Version1.4.1
GhostviewGhostview Version1.5
GvGv Version2.7.6
GvGv Version2.7b1
GvGv Version2.7b2
GvGv Version2.7b3
GvGv Version2.7b4
GvGv Version2.7b5
GvGv Version2.9.4
GvGv Version3.0.0
GvGv Version3.0.4
GvGv Version3.1.4
GvGv Version3.1.6
GvGv Version3.2.4
GvGv Version3.4.2
GvGv Version3.4.3
GvGv Version3.4.12
GvGv Version3.5.2
GvGv Version3.5.3
GvGv Version3.5.8
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.03% 0.785
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.redhat.com/support/errata/RHSA-2002-220.html
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-053.0.txt
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000542
http://marc.info/?l=bugtraq&m=103305615613319&w=2
http://marc.info/?l=bugtraq&m=103305778615625&w=2
http://marc.info/?l=bugtraq&m=103487806800388&w=2
http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert/47780&zone_32=category:security
http://www.debian.org/security/2002/dsa-176
http://www.debian.org/security/2002/dsa-179
http://www.debian.org/security/2002/dsa-182
http://www.iss.net/security_center/static/10201.php
Vendor Advisory
http://www.kb.cert.org/vuls/id/600777
Third Party Advisory
US Government Resource
http://www.kde.org/info/security/advisory-20021008-1.txt
http://www.mandriva.com/security/advisories?name=MDKSA-2002:069
http://www.mandriva.com/security/advisories?name=MDKSA-2002:071
http://www.redhat.com/support/errata/RHSA-2002-207.html
http://www.redhat.com/support/errata/RHSA-2002-212.html
Patch
Vendor Advisory
http://www.securityfocus.com/bid/5808
Patch
Vendor Advisory
Exploit