Return to CVE list

CVE-2006-4262

5.1
Medium

CVE-2006-4262

cve@mitre.org
Deferred

Description

Multiple buffer overflows in cscope 15.5 and earlier allow user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via multiple vectors including (1) a long pathname that is not properly handled during file list parsing, (2) long pathnames that result from path variable expansion such as tilde expansion for the HOME environment variable, and (3) a long -f (aka reffile) command line argument.

Exploits

No known exploits found for this CVE.

Search Exploit-DB

References

af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/21601
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/22239
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/22515
af854a3a-2127-422b-91ae-364da2661108
http://security.gentoo.org/glsa/glsa-200610-08.xml
af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2006/dsa-1186
af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/28135
af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/28136
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/19686
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/19687
af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/3374