Vulnerabilities (CVE)

Filtered by vendor University Of Minnesota Subscribe
Filtered by product Gopher
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-2772 1 University Of Minnesota 1 Gopher 2023-12-10 7.5 HIGH N/A
Multiple stack-based buffer overflows in University of Minnesota gopher client 3.0.9 allow remote malicious servers to execute arbitrary code via (1) a long "+VIEWS:" reply, which is not properly handled in the VIfromLine function, and (2) certain arguments when launching third party programs such as a web browser from a web link, which is not properly handled in the FIOgetargv function.
CVE-2005-1853 1 University Of Minnesota 1 Gopher 2023-12-10 7.2 HIGH N/A
gopher.c in the Gopher client 3.0.5 does not properly create temporary files, which allows local users to gain privileges.
CVE-2002-0371 2 Microsoft, University Of Minnesota 4 Internet Explorer, Isa Server, Proxy Server and 1 more 2023-12-10 7.5 HIGH N/A
Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 allows remote attackers to execute arbitrary code via a gopher:// URL that redirects the user to a real or simulated gopher server that sends a long response.