Vulnerabilities > CVE-2001-0441 - Buffer Overflow vulnerability in SLRN Long Header

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
debian
mandrakesoft
redhat
nessus

Summary

Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header.

Nessus

  • NASL familyMandriva Local Security Checks
    NASL idMANDRAKE_MDKSA-2001-028.NASL
    descriptionA buffer overflow exists in versions of the slrn news reader prior to 0.9.6.3pl4 as reported by Bill Nottingham. This problem exists in the wrapping/unwrapping functions and a long header in a message might overflow a buffer which could result in execution of arbitrary code encoded in the message.
    last seen2020-06-01
    modified2020-06-02
    plugin id61902
    published2012-09-06
    reporterThis script is Copyright (C) 2012-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/61902
    titleMandrake Linux Security Advisory : slrn (MDKSA-2001:028)
  • NASL familyDebian Local Security Checks
    NASL idDEBIAN_DSA-040.NASL
    descriptionBill Nottingham reported a problem in the wrapping/unwrapping functions of the slrn newsreader. A long header in a message might overflow a buffer, which could result in executing arbitrary code encoded in the message. The default configuration does not have wrapping enable, but it can easily be enabled either by changing the configuration or pressing W while viewing a message.
    last seen2020-06-01
    modified2020-06-02
    plugin id14877
    published2004-09-29
    reporterThis script is Copyright (C) 2004-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/14877
    titleDebian DSA-040-1 : slrn - buffer overflow

Redhat

advisories
rhsa
idRHSA-2001:028