7.5
CVSSv2

CVE-2007-5197

Published: 02/11/2007 Updated: 30/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the Mono.Math.BigInteger class in Mono 1.2.5.1 and previous versions allows context-dependent malicious users to execute arbitrary code via unspecified vectors related to Reduce in Montgomery-based Pow methods.

Vulnerable Product Search on Vulmon Subscribe to Product

mono mono 1.1.13

mono mono 1.1.13.4

mono mono 1.1.8.3

mono mono

mono mono 1.0

mono mono 1.0.5

mono mono 1.1.18

mono mono 1.1.4

mono mono 1.1.13.6

mono mono 1.1.13.7

mono mono 1.1.17

mono mono 1.1.17.1

Vendor Advisories

It was discovered that Mono did not correctly bounds check certain BigInteger actions Remote attackers could exploit this to crash a Mono application or possibly execute arbitrary code with user privileges ...
An integer overflow in the BigInteger data type implementation has been discovered in the free NET runtime Mono The oldstable distribution (sarge) doesn't contain mono For the stable distribution (etch) this problem has been fixed in version 1221-1etch1 A powerpc build will be provided later The unstable distribution (sid) will be fix ...