7.5
CVSSv2

CVE-2003-1023

Published: 20/01/2004 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in vfs_s_resolve_symlink of vfs/direntry.c for Midnight Commander (mc) 4.6.0 and previous versions, and possibly later versions, allows remote malicious users to execute arbitrary code during symlink conversion.

Vulnerable Product Search on Vulmon Subscribe to Product

midnight commander midnight commander 4.5.52

midnight commander midnight commander 4.5.55

midnight commander midnight commander 4.6

Vendor Advisories

A vulnerability was discovered in Midnight Commander, a file manager, whereby a malicious archive (such as a tar file) could cause arbitrary code to be executed if opened by Midnight Commander For the current stable distribution (woody) this problem has been fixed in version 4555-12woody2 For the unstable distribution (sid) this problem has b ...