Gentoo: GLSA-200606-10: Cscope: Many buffer overflows
Summary
Gentoo Linux Security Advisory GLSA 200606-10
https://security.gentoo.org/
Severity: Normal
Title: Cscope: Many buffer overflows
Date: June 11, 2006
Bugs: #133829
ID: 200606-10
Synopsis
=======
Cscope is vulnerable to multiple buffer overflows that could lead to
the execution of arbitrary code.
Background
=========
Cscope is a developer's tool for browsing source code.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 dev-util/cscope < 15.5-r6 >= 15.5-r6
==========
Cscope does not verify the length of file names sourced in #include
statements.
Impact
=====
A user could be enticed to source a carefully crafted file which will
allow the attacker to execu...
Resolution
References
Availability
Concerns
Background