5.1
CVSSv2

CVE-2006-1356

Published: 22/03/2006 Updated: 20/07/2017
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in the count_vcards function in LibVC 3, as used in Rolo, allows user-assisted malicious users to execute arbitrary code via a vCard file (e.g. contacts.vcf) containing a long line.

Vulnerable Product Search on Vulmon Subscribe to Product

andrew hsu rolo 11

andrew hsu libvc 3

Exploits

source: wwwsecurityfocuscom/bid/17237/info LibVC is prone to a buffer-overflow vulnerability This issue is due to a failure in the library to perform proper bounds checks on user-supplied data before using it in a finite-sized buffer The issue occurs when the application handles excessive data supplied with a vcard file An attacker ...