
CVE-2012-6090 – Gentoo Linux Security Advisory 201312-05
https://notcve.org/view.php?id=CVE-2012-6090
04 Jan 2013 — Multiple stack-based buffer overflows in the expand function in os/pl-glob.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted filename. Múltiples vulnerabilidades de ejecución de secuencias de comandos en sitios cruzados (XSS) en la función expand en os/pl-glob.c en SWI-Prolog anteriores a v6.2.5 y v6.3.x anteriores a v6.3.7, permite a atacantes remotos provocar una denegación de servici... • http://openwall.com/lists/oss-security/2013/01/03/7 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2012-6089 – Gentoo Linux Security Advisory 201312-05
https://notcve.org/view.php?id=CVE-2012-6089
04 Jan 2013 — Multiple stack-based buffer overflows in the canoniseFileName function in os/pl-os.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted filename. Múltiples vulnerabilidades de ejecución de secuencias de comandos en sitios cruzados (XSS) en la función canoniseFileName en os/pl-os.c en SWI-Prolog anteriores a v6.2.5 y v6.3.x anteriores a v6.3.7, permite a atacantes remotos provocar una deneg... • http://openwall.com/lists/oss-security/2013/01/03/7 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •