4.6
CVSSv2

CVE-2006-3931

Published: 31/07/2006 Updated: 17/10/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the daemon function in midirecord.cc in Tuomas Airaksinen Midirecord 2.0 allows local users to execute arbitrary code via a long command line argument (filename). NOTE: This may not be a vulnerability if Midirecord is not installed setuid.

Vulnerable Product Search on Vulmon Subscribe to Product

tuomas airaksinen midirecord 2.0

Exploits

source: wwwsecurityfocuscom/bid/19190/info Midirecord is prone to a local buffer-overflow vulnerability because it fails to do proper bounds checking on user-supplied data before using it in a finite-sized buffer An attacker can exploit this issue to execute arbitrary code in the context of the victim running the affected application ...