Vulnerabilities > Cscope > Cscope > 15.3

DATE CVE VULNERABILITY TITLE RISK
2009-05-07 CVE-2009-1577 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cscope
Multiple stack-based buffer overflows in the putstring function in find.c in Cscope before 15.6 allow user-assisted remote attackers to execute arbitrary code via a long (1) function name or (2) symbol in a source-code file.
network
cscope CWE-119
critical
9.3
2009-05-05 CVE-2009-0148 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cscope
Multiple buffer overflows in Cscope before 15.7a allow remote attackers to execute arbitrary code via long strings in input such as (1) source-code tokens and (2) pathnames, related to integer overflows in some cases.
network
cscope CWE-119
critical
9.3
2005-01-10 CVE-2004-0996 main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
local
low complexity
cscope debian gentoo sco
2.1