Multiple stack-based buffer overflows in fsplib.c in fsplib before 0.9 might allow remote attackers to execute arbitrary code via (1) a long filename that is not properly handled by the fsp_readdir_native function when MAXNAMLEN is greater than 255, or (2) a long d_name directory (dirent) field in the fsp_readdir function.
References
Configurations
Information
Published : 2007-07-25 10:30
Updated : 2008-11-14 21:00
NVD link : CVE-2007-3962
Mitre link : CVE-2007-3962
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
fsp
- c_library