FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2001-0775

This CVE name corresponds to:

Entered Topic
2005-06-03 xloadimage -- buffer overflow in FACES image handling

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2001-0775
Phase Modified(20050329)

Description

Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2) Lastname field.

References

Source Reference
BUGTRAQ 20010710 xloadimage remote exploit - tstot.c
DEBIAN DSA-069
DEBIAN DSA-695
GENTOO GLSA-200503-05
SUSE SA:2001:024
REDHAT RHSA-2001:088
BID 3006
XF xloadimage-faces-bo(6821)