A buffer overflow flaw was found in the way minicom before version 2.7.1 handled VT100 escape sequences. A malicious terminal device could potentially use this flaw to crash minicom, or execute arbitrary code in the context of the minicom process.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7467 | Issue Tracking |
http://www.openwall.com/lists/oss-security/2017/04/18/5 | Exploit Mailing List Third Party Advisory |
https://security.gentoo.org/glsa/201706-13 | Third Party Advisory |
http://www.securityfocus.com/bid/97966 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2018-07-11 06:29
Updated : 2019-10-09 16:29
NVD link : CVE-2017-7467
Mitre link : CVE-2017-7467
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
minicom_project
- minicom