oss-sec mailing list archives
CVE request: Buffer overflow in das_watchdog
From: Florian Weimer <fw () deneb enyo de>
Date: Wed, 01 Apr 2015 21:29:20 +0200
This was privately reported to Debian, but the developer published a fix before we could assign a CVE ID. Adam Sampson discovered that das_watchdog, a daemon to detect and pause real-time processes which are misbehaving, contains an exploitable buffer overflow in the handling of the XAUTHORITY environment variable. Upstream commit: <https://github.com/kmatheussen/das_watchdog/commit/bd20bb02e75e2c>
Current thread:
- CVE request: Buffer overflow in das_watchdog Florian Weimer (Apr 01)
- Re: CVE request: Buffer overflow in das_watchdog cve-assign (Apr 02)