LWN.net Logo

hztty: buffer overflow vulnerability

Package(s):hztty CVE #(s):CAN-2003-0783
Created:September 24, 2003 Updated:September 24, 2003
Description: hztty (a program for translating Chinese character encodings) has a pair of buffer overflow vulnerabilities which can be exploited by a local attacker. This problem is compounded on Debian systems by the fact that hztty is (unnecessarily) installed setuid root. Version 2.0-6 has the fix.
Alerts:
Debian DSA-385-1 2003-09-18

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds