CVE-2010-0411
08.02.2010, 20:30
Multiple integer signedness errors in the (1) __get_argv and (2) __get_compat_argv functions in tapset/aux_syscalls.stp in SystemTap 1.1 allow local users to cause a denial of service (script crash, or system crash or hang) via a process with a large number of arguments, leading to a buffer overflow.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| systemtap | systemtap | 1.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| systemtap |
| ||||||||||||||||||
| systemtap-runtime |
| ||||||||||||||||||
| systemtap-sdt-devel |
| ||||||||||||||||||
| systemtap-server |
|
Common Weakness Enumeration
References