Omega-RPG Environment Variable Buffer Overrun Vulnerability
BID:9016
Info
Omega-RPG Environment Variable Buffer Overrun Vulnerability
| Bugtraq ID: | 9016 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2003-0932 |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 11 2003 12:00AM |
| Updated: | Jul 12 2009 12:56AM |
| Credit: | Discovery is credited to Steve Kemp. |
| Vulnerable: |
omega-rpg omega-rpg 0.9 0-pa9 |
| Not Vulnerable: | |
Discussion
Omega-RPG Environment Variable Buffer Overrun Vulnerability
omega-rpg is prone to a locally exploitable buffer overrun. This is due to insufficient bounds checking of environment variables and may allow for execution of arbitrary code in the context of group 'games'.
omega-rpg is prone to a locally exploitable buffer overrun. This is due to insufficient bounds checking of environment variables and may allow for execution of arbitrary code in the context of group 'games'.
Exploit / POC
Omega-RPG Environment Variable Buffer Overrun Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Omega-RPG Environment Variable Buffer Overrun Vulnerability
Solution:
Debian has released an advisory (DSA 400-1) that includes updates to address this issue. Please see the attached advisory for details on obtaining and applying fixes.
omega-rpg omega-rpg 0.9 0-pa9
Solution:
Debian has released an advisory (DSA 400-1) that includes updates to address this issue. Please see the attached advisory for details on obtaining and applying fixes.
omega-rpg omega-rpg 0.9 0-pa9
-
Debian omega-rpg_0.90-pa9-7woody1_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_alpha.deb -
Debian omega-rpg_0.90-pa9-7woody1_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_arm.deb -
Debian omega-rpg_0.90-pa9-7woody1_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_hppa.deb -
Debian omega-rpg_0.90-pa9-7woody1_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_i386.deb -
Debian omega-rpg_0.90-pa9-7woody1_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_ia64.deb -
Debian omega-rpg_0.90-pa9-7woody1_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_m68k.deb -
Debian omega-rpg_0.90-pa9-7woody1_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_mips.deb -
Debian omega-rpg_0.90-pa9-7woody1_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_mipsel.deb -
Debian omega-rpg_0.90-pa9-7woody1_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_powerpc.deb -
Debian omega-rpg_0.90-pa9-7woody1_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_s390.deb -
Debian omega-rpg_0.90-pa9-7woody1_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/omega-rpg/omega-rpg_0.9 0-pa9-7woody1_sparc.deb
References
Omega-RPG Environment Variable Buffer Overrun Vulnerability
References:
References: