Public bug reported:

Binary package hint: inotify-tools

References:
DSA-1440-1 (http://www.debian.org/security/2007/dsa-1440)

Quoting:
"It was discovered that a buffer overflow in the filename processing of
the inotify-tools, a command-line interface to inotify, may lead to
the execution of arbitrary code. This only affects the internal
library and none of the frontend tools shipped in Debian."

** Affects: inotify-tools (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: inotify-tools (Debian)
     Importance: Unknown
         Status: Unknown

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2007-5037

** Bug watch added: Debian Bug tracker #443913
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=443913

** Also affects: inotify-tools (Debian) via
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=443913
   Importance: Unknown
       Status: Unknown

-- 
[inotify-tools] [CVE-2007-5037] buffer overflow, possible execution of 
arbitrary code, local vulnerability
https://bugs.launchpad.net/bugs/180301
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to