Multiple vulnerabilities in fliccd, when installed setuid root as part of the kdeedu Kstars support for Instrument Neutral Distributed Interface (INDI) in KDE 3.3 to 3.3.2, allow local users and remote attackers to execute arbitrary code via stack-based buffer overflows.
References
Link | Resource |
---|---|
http://www.kde.org/info/security/advisory-20050215-1.txt | Patch Vendor Advisory |
http://www.redhat.com/archives/fedora-announce-list/2005-February/msg00044.html | Vendor Advisory |
http://www.gentoo.org/security/en/glsa/glsa-200502-23.xml | Vendor Advisory |
http://secunia.com/advisories/14306 | Patch |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-05-01 21:00
Updated : 2008-09-05 13:45
NVD link : CVE-2005-0011
Mitre link : CVE-2005-0011
JSON object : View
CWE
Products Affected
kde
- kde