Oval Definition:oval:org.mitre.oval:tst:37238
Comment:ed is earlier than 0:0.2-33.30E.1
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:15110
State:oval:org.mitre.oval:ste:10904
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10678
V
Heap-based buffer overflow in the strip_escapes function in signal.c in GNU ed before 1.0 allows context-dependent or user-assisted attackers to execute arbitrary code via a long filename. NOTE: since ed itself does not typically run with special privileges, this issue only crosses privilege boundaries when ed is invoked as a third-party component.
2013-04-29
BACK