FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-19 20:48:44 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
8a3ece40-3315-11da-a263-0001020eed82picasm -- buffer overflow vulnerability

Shaun Colley reports:

When generating error and warning messages, picasm copies strings into fixed length buffers without bounds checking.

If an attacker could trick a user into assembling a source file with a malformed 'error' directive, arbitrary code could be executed with the privileges of the user. This could result in full system compromise.


Discovery 2005-05-20
Entry 2005-10-02
picasm
< 1.12c

13698
CVE-2005-1679
http://marc.theaimsgroup.com/?l=bugtraq&m=111661253517089