| |
| | ISS X-Force Database: gv-sscanf-function-bo(10201): gv sscanf() function buffer overflow |
 | | gv version 3.5.8 is vulnerable to a buffer overflow when the sscanf() function is called. |
 | | By sending a specially-crafted PostScript or PDF file to a gv user, a remote attacker could overflow a buffer and execute code on the system with the same privileges as the victim, once the malicious file is opened. |
 | | CVE-2002-0838: Buffer overflow in (1) gv 3.5.8 and earlier, (2) gvv 1.0.2 and earlier, (3) ggv 1.99.90 and earlier, (4) gnome-gv, and (5) kghostview in kdegraphics 2.2.2 and earlier, allows attackers to execute arbitrary code via a malformed (a) PDF or (b) PostScript file, which is processed by an unsafe call to sscanf. |
| xforce.iss.net /xforce/xfdb/10201 (749 words) |
|