10
CVSSv2

CVE-2009-1382

Published: 14/07/2009 Updated: 10/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple stack-based buffer overflows in mimetex.cgi in mimeTeX, when downloaded prior to 20090713, allow remote malicious users to execute arbitrary code via a TeX file with long (1) picture, (2) circle, or (3) input tags.

Vulnerable Product Search on Vulmon Subscribe to Product

forkosh mimetex

Vendor Advisories

Chris Evans discovered that mimeTeX incorrectly handled certain long tags An attacker could exploit this with a crafted mimeTeX expression and cause a denial of service or possibly execute arbitrary code (CVE-2009-1382) ...
Debian Bug report logs - #537254 mimetex: CVE-2009-2459 CVE-2009-1382 multiple security issues Package: mimetex; Maintainer for mimetex is Hilmar Preuße <hille42@webde>; Source for mimetex is src:mimetex (PTS, buildd, popcon) Reported by: Nico Golde <nion@debianorg> Date: Thu, 16 Jul 2009 13:12:04 UTC Severity: g ...