2 results (0.002 seconds)

CVSS: 9.8EPSS: 2%CPEs: 39EXPL: 0

04 Jan 2013 — Multiple stack-based buffer overflows in the expand function in os/pl-glob.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted filename. Múltiples vulnerabilidades de ejecución de secuencias de comandos en sitios cruzados (XSS) en la función expand en os/pl-glob.c en SWI-Prolog anteriores a v6.2.5 y v6.3.x anteriores a v6.3.7, permite a atacantes remotos provocar una denegación de servici... • http://openwall.com/lists/oss-security/2013/01/03/7 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 9.8EPSS: 2%CPEs: 39EXPL: 0

04 Jan 2013 — Multiple stack-based buffer overflows in the canoniseFileName function in os/pl-os.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted filename. Múltiples vulnerabilidades de ejecución de secuencias de comandos en sitios cruzados (XSS) en la función canoniseFileName en os/pl-os.c en SWI-Prolog anteriores a v6.2.5 y v6.3.x anteriores a v6.3.7, permite a atacantes remotos provocar una deneg... • http://openwall.com/lists/oss-security/2013/01/03/7 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •