Debian Essential And Critical Security Patch Updates - Page 281

Find the information you need for your favorite open source distribution .

Debian: acm Integer overflow

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

acm, a multi-player aerial combat simulation, uses a network protocolbased on the same RPC implementation used in many C libraries. Thisimplementation was found to contain an integer overflow vulnerabilitywhich could be exploited to execute arbitrary code.

Debian: 'osh' buffer overflows

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Steve Kemp discovered that osh, a shell intended to restrict the actions of the user, contains two buffer overflows, in processing environment variables and file redirections. These vulnerabilities could be used to execute arbitrary code, overriding any restrictions placed on the shell.