CVE-2009-1577
- EPSS 11.96%
- Veröffentlicht 07.05.2009 17:30:04
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple stack-based buffer overflows in the putstring function in find.c in Cscope before 15.6 allow user-assisted remote attackers to execute arbitrary code via a long (1) function name or (2) symbol in a source-code file.
CVE-2009-0148
- EPSS 10.75%
- Veröffentlicht 05.05.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple buffer overflows in Cscope before 15.7a allow remote attackers to execute arbitrary code via long strings in input such as (1) source-code tokens and (2) pathnames, related to integer overflows in some cases. NOTE: this issue exists because ...
CVE-2006-4262
- EPSS 1.6%
- Veröffentlicht 23.08.2006 10:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple buffer overflows in cscope 15.5 and earlier allow user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via multiple vectors including (1) a long pathname that is not properly handled during file li...
CVE-2004-0996
- EPSS 0.39%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
CVE-2004-2541
- EPSS 1.94%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in Cscope 15.5, and possibly multiple overflows, allows remote attackers to execute arbitrary code via a C file with a long #include line that is later browsed by the target.