LWN.net Logo

libthai: arbitrary code execution

Package(s):libthai CVE #(s):CVE-2009-4012
Created:January 15, 2010 Updated:February 1, 2010
Description: From the Debian advisory: Tim Starling discovered that libthai, a set of Thai language support routines, is vulnerable of integer/heap overflow. This vulnerability could allow an attacker to run arbitrary code by sending a very long string.
Alerts:
Ubuntu USN-887-1 2010-01-18
Mandriva MDVSA-2010:010 2010-01-16
Debian DSA-1971-1 2010-01-15
SuSE SUSE-SR:2010:002 2010-02-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds