SecurityAlert : 3915 CVE : CVE-2008-2363 SecurityRisk : Medium (About) Remote Exploit : No Local Exploit : Yes Victim interaction required : No Exploit Given : No Credit : Pavel Polischouk Published : 02.06.2008
Affected Software :
Pan .nzb files
Advisory Text :
Hi,
I discovered a heap overflow in pan affecting the parsing of .nzb files.
Details (including stack dumps and offending .nzb files) in RedHat
Bugzilla entry:
Project developers have been notified. CVE issued by Red Hat Security
Response Team.
Thanks,
Pavel
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.
Maksymilian Arciemowicz discovered a Integer Overflow
vulnerability in the libc library "strfmon()" function.A vulnerability could allow an attacker who successfully exploits this vulnerability to take control of the affected *BSD systems.