CVE-2009-0148

Multiple buffer overflows in Cscope before 15.7a allow remote attackers to execute arbitrary code via long strings in input such as (1) source-code tokens and (2) pathnames, related to integer overflows in some cases. NOTE: this issue exists because of an incomplete fix for CVE-2004-2541.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cscope:cscope:13.0:*:*:*:*:*:*:*
cpe:2.3:a:cscope:cscope:15.0bl2:*:*:*:*:*:*:*
cpe:2.3:a:cscope:cscope:15.1:*:*:*:*:*:*:*
cpe:2.3:a:cscope:cscope:15.3:*:*:*:*:*:*:*
cpe:2.3:a:cscope:cscope:15.4:*:*:*:*:*:*:*
cpe:2.3:a:cscope:cscope:15.5:*:*:*:*:*:*:*
cpe:2.3:a:cscope:cscope:15.6:*:*:*:*:*:*:*
cpe:2.3:a:cscope:cscope:15.7:*:*:*:*:*:*:*

History

No history.

Information

Published : 2009-05-05 17:30

Updated : 2023-12-10 10:51


NVD link : CVE-2009-0148

Mitre link : CVE-2009-0148

CVE.ORG link : CVE-2009-0148


JSON object : View

Products Affected

cscope

  • cscope
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer