tampone multipli overflow nella LaTeX2rtf 1.9.15, ed eventualmente altre versioni, permettono attaccanti remoti di eseguire codice arbitrario via (1) la funzione expandmacro, ed eventualmente (2) ambienti e (3) TranslateCommand. |
http://www.securityfocus.com/bid/11233 http://cvs.sourceforge.net/viewcvs.py/latex2rtf/latex2rtf/definitions.c?rev=1.22&view=log http://www.osvdb.org/displayvuln.php?osvdb_id=10216 http://www.securitytracker.com/alerts/2004/Sep/1011367.html https://exchange.xforce.ibmcloud.com/vulnerabilities/17460 https://exchange.xforce.ibmcloud.com/vulnerabilities/17487 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-2167 |
Vulnerabilità: CVE-2004-2167
