Beveiligingsadvies

CVE-2014-3158

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2014-11-15 21:00:00
Laatst bijgewerkt 2024-08-06 10:35:56
Toegewezen door Chrome
CVSS-score geen score
Status PUBLISHED

Beschrijving

Integer overflow in the getword function in options.c in pppd in Paul's PPP Package (ppp) before 2.4.7 allows attackers to "access privileged options" via a long word in an options file, which triggers a heap-based buffer overflow that "[corrupts] security-relevant variables."