[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2435-1 gnash -- several

ID: oval:org.secpod.oval:def:600760Date: (C)2012-03-27   (M)2023-02-20
Class: PATCHFamily: unix




Several vulnerabilities have been identified in Gnash, the GNU Flash player. CVE-2012-1175 Tielei Wang from Georgia Tech Information Security Center discovered a vulnerability in GNU Gnash which is caused due to an integer overflow error and can be exploited to cause a heap-based buffer overflow by tricking a user into opening a specially crafted SWF file. CVE-2011-4328 Alexander Kurtz discovered an unsafe management of HTTP cookies. Cookie files are stored under /tmp and have predictable names, vulnerability that allows a local attacker to overwrite arbitrary files the users has write permissions for, and are also world-readable which may cause information leak. CVE-2010-4337 Jakub Wilk discovered an unsafe management of temporary files during the build process. Files are stored under /tmp and have predictable names, vulnerability that allows a local attacker to overwrite arbitrary files the users has write permissions for.

Platform:
Debian 6.0
Product:
gnash
Reference:
DSA-2435-1
CVE-2010-4337
CVE-2011-4328
CVE-2012-1175
CVE    3
CVE-2011-4328
CVE-2012-1175
CVE-2010-4337
CPE    7
cpe:/a:gnu:gnash:0.8.5
cpe:/a:gnu:gnash
cpe:/a:gnu:gnash:0.8.8
cpe:/a:gnu:gnash:0.8.7
...

© SecPod Technologies