Vulnerability Name: | CVE-2005-0706 (CCN-19648) | ||||||||||||||||
Assigned: | 2005-03-09 | ||||||||||||||||
Published: | 2005-03-09 | ||||||||||||||||
Updated: | 2017-10-11 | ||||||||||||||||
Summary: | Buffer overflow in discdb.c for grip 3.1.2 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing the cddb lookup to return more matches than expected. | ||||||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-0706 Source: CCN Type: Grip Web site Grip -- CD Ripping/MP3 Encoding for Linux Source: CCN Type: RHSA-2005-304 grip security update Source: CCN Type: RHSA-2009-0005 Moderate: gnome-vfs, gnome-vfs2 security update Source: CONFIRM Type: UNKNOWN http://rpmfind.net/linux/RPM/suse/9.3/i386/suse/i586/gnome-vfs-1.0.5-816.2.i586.html Source: SECUNIA Type: UNKNOWN 32803 Source: SECUNIA Type: UNKNOWN 33389 Source: SECUNIA Type: UNKNOWN 33824 Source: GENTOO Type: Patch GLSA-200503-21 Source: CCN Type: SourceForge.net SourceForge.net: Project Info - Grip Source: CONFIRM Type: UNKNOWN http://sourceforge.net/tracker/index.php?func=detail&aid=1160134&group_id=3714&atid=303714 Source: MISC Type: Vendor Advisory http://sourceforge.net/tracker/index.php?func=detail&aid=834724&group_id=3714&atid=103714 Source: CCN Type: ASA-2009-036 gnome-vfs gnome-vfs2 security update (RHSA-2009-0005) Source: CCN Type: GLSA-200503-21 Grip: CDDB response overflow Source: CCN Type: GLSA-200504-07 GnomeVFS, libcdaudio: CDDB response overflow Source: REDHAT Type: UNKNOWN RHSA-2005:304 Source: REDHAT Type: UNKNOWN RHSA-2009:0005 Source: BID Type: UNKNOWN 12770 Source: CCN Type: BID-12770 Grip CDDB Response Multiple Matches Buffer Overflow Vulnerability Source: FEDORA Type: UNKNOWN FLSA:152919 Source: XF Type: UNKNOWN grip-cddb-bo(19648) Source: XF Type: UNKNOWN grip-cddb-bo(19648) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:10768 Source: FEDORA Type: UNKNOWN FEDORA-2008-9604 Source: FEDORA Type: UNKNOWN FEDORA-2008-9521 Source: FEDORA Type: UNKNOWN FEDORA-2008-11956 Source: SUSE Type: SUSE-SR:2005:010 SUSE Security Summary Report | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: Denotes that component is vulnerable | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |