CVE-2007-6337
https://notcve.org/view.php?id=CVE-2007-6337
Unspecified vulnerability in the bzip2 decompression algorithm in nsis/bzlib_private.h in ClamAV before 0.92 has unknown impact and remote attack vectors. Vulnerabilidad no especificada en el algoritmo de descompresión bzip2 en nsis/bzlib_private.h de ClamAV anterior a 0.92 tiene impacto y vectores de ataque remotos desconocidos. • http://docs.info.apple.com/article.html?artnum=307562 http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html http://lists.opensuse.org/opensuse-security-announce/2008-01/msg00002.html http://osvdb.org/42293 http://secunia.com/advisories/28153 http://secunia.com/advisories/28278 http://secunia.com/advisories/28412 http://secunia.com/advisories/28421 http://secunia.com/advisories/28587 http://secunia.com/advisories/29420 http://security.gentoo.org/glsa/glsa-2007 •
CVE-2007-6249
https://notcve.org/view.php?id=CVE-2007-6249
etc-update in Portage before 2.1.3.11 on Gentoo Linux relies on the umask to set permissions for the merge file, often resulting in permissions weaker than those of the original files, which might allow local users to obtain sensitive information by reading the merge file. etc-update en Portage before 2.1.3.11 sobre Gentoo Linux depende de umask para asignar permisos al fichero a unir, normalmente como resultado de permisos débiles que los archivos orignales, lo cual podría permitir a usuarios locales obtener información sensible a través de la lectura del fichero a unir. • http://bugs.gentoo.org/show_bug.cgi?id=193589 http://osvdb.org/42636 http://secunia.com/advisories/28094 http://sources.gentoo.org/viewcvs.py/portage?rev=7799&view=rev http://www.gentoo.org/security/en/glsa/glsa-200712-11.xml http://www.securityfocus.com/bid/26864 http://www.securitytracker.com/id?1019097 https://exchange.xforce.ibmcloud.com/vulnerabilities/39035 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2007-4137 – QT off by one buffer overflow
https://notcve.org/view.php?id=CVE-2007-4137
Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (crash) via a crafted Unicode string that triggers a heap-based buffer overflow. NOTE: Qt 4 has the same error in the QUtf8Codec::convertToUnicode function, but it is not exploitable. Error de superación de límite (off-by-one) en la función QUtf8Decoder::toUnicode de Trolltech Qt3 permite a usuarios locales o remotos (dependiendo del contexto) provocar una denegación de servicio (caída) mediante una cadena Unicode manipulada que dispara un desbordamiento de búfer basado en montículo. NOTA: Qt 4 tiene el mismo error en la función QUtf8Codec::convertToUnicode, pero no es explotable. • ftp://patches.sgi.com/support/free/security/advisories/20070901-01-P.asc http://bugs.gentoo.org/show_bug.cgi?id=192472 http://dist.trolltech.com/developer/download/175791_3.diff http://dist.trolltech.com/developer/download/175791_4.diff http://fedoranews.org/updates/FEDORA-2007-221.shtml http://fedoranews.org/updates/FEDORA-2007-703.shtml http://osvdb.org/39384 http://secunia.com/advisories/26778 http://secunia.com/advisories/26782 http://secunia.com/advisories/26804 http: • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-193: Off-by-one Error •
CVE-2007-3532
https://notcve.org/view.php?id=CVE-2007-3532
NVIDIA drivers (nvidia-drivers) before 1.0.7185, 1.0.9639, and 100.14.11, as used in Gentoo Linux and possibly other distributions, creates /dev/nvidia* device files with insecure permissions, which allows local users to modify video card settings, cause a denial of service (crash or physical video card damage), and obtain sensitive information. Controladores NVIDIA (nvidia-drivers) versiones anteriores a 1.0.7185, 1.0.9639 y 100.14.11, tal y como son usados en Gentoo Linux y posiblemente otras distribuciones, crea archivos de dispositivo /dev/nvidia* con permisos no confiables, lo que permite a usuarios locales modificar la configuración de la tarjeta de vídeo, causar una denegación de servicio (bloqueo o daño físico de tarjeta de vídeo) y obtener información confidencial. • http://osvdb.org/40177 http://secunia.com/advisories/26497 http://www.gentoo.org/security/en/glsa/glsa-200708-14.xml http://www.securityfocus.com/bid/25360 http://www.securityfocus.com/bid/25363 https://bugs.gentoo.org/show_bug.cgi?id=183567 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2007-3531
https://notcve.org/view.php?id=CVE-2007-3531
The set_default_speeds function in backend/backend.c in NVidia NVClock before 0.8b2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/nvclock temporary file. La función set_default_speeds en backend/backend.c en NVidia NVClock before 0.8b2 permite a usuarios locales sobrescribir archivos de su elección a través de un ataque de enlace simbólico sobre el archivo temporal /tmp/nvclock. • http://bugs.gentoo.org/show_bug.cgi?id=184071 http://osvdb.org/38573 http://secunia.com/advisories/26200 http://secunia.com/advisories/26208 http://security.gentoo.org/glsa/glsa-200707-08.xml http://www.securityfocus.com/bid/25052 https://exchange.xforce.ibmcloud.com/vulnerabilities/35584 •