7.5
CVSSv2

CVE-2005-3863

Published: 29/11/2005 Updated: 19/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in kkstrtext.h in ktools library 0.3 and previous versions, as used in products such as (1) centericq, (2) orpheus, (3) motor, and (4) groan, allows local users or remote malicious users to execute arbitrary code via a long parameter to the VGETSTRING macro.

Vulnerable Product Search on Vulmon Subscribe to Product

ktools ktools

Vendor Advisories

Mehdi Oudad and Kevin Fernandez discovered a buffer overflow in the ktools library which is used in centericq, a text-mode multi-protocol instant messenger client, which may lead local or remote attackers to execute arbitrary code For the old stable distribution (woody) this problem has been fixed in version 451-11woody2 For the stable distrib ...
Mehdi Oudad and Kevin Fernandez discovered a buffer overflow in the ktools library which is used in motor, an integrated development environment for C, C++ and Java, which may lead local attackers to execute arbitrary code For the old stable distribution (woody) this problem has been fixed in version 322-2woody1 For the stable distribution (sar ...