CVE-2006-4810
 
Severity Score
7.8
*CVSS v3
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Buffer overflow in the readline function in util/texindex.c, as used by the (1) texi2dvi and (2) texindex commands, in texinfo 4.8 and earlier allows local users to execute arbitrary code via a crafted Texinfo file.
Desbordamiento del búfer en la función readline de util/texindex.c, tal y como se usa en los comandos (1) texi2dvi y (2) texindex en el texinfo 4.8 y versiones anteriores permite a usuarios locales la ejecución de código de su elección a través de el fichero manipulado Texinfo.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2006-09-15 CVE Reserved
- 2006-11-08 CVE Published
- 2024-08-07 CVE Updated
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (32)
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.redhat.com/support/errata/RHSA-2006-0727.html | 2018-10-17 |
URL | Date | SRC |
---|---|---|
ftp://patches.sgi.com/support/free/security/advisories/20061101-01-P | 2018-10-17 | |
http://secunia.com/advisories/22725 | 2018-10-17 | |
http://secunia.com/advisories/22777 | 2018-10-17 | |
http://secunia.com/advisories/22798 | 2018-10-17 | |
http://security.gentoo.org/glsa/glsa-200611-16.xml | 2018-10-17 | |
http://www.debian.org/security/2006/dsa-1219 | 2018-10-17 | |
http://www.mandriva.com/security/advisories?name=MDKSA-2006:203 | 2018-10-17 | |
http://www.novell.com/linux/security/advisories/2006_28_sr.html | 2018-10-17 | |
http://www.openpkg.org/security/advisories/OpenPKG-SA-2006.034-texinfo.html | 2018-10-17 | |
http://www.trustix.org/errata/2006/0063 | 2018-10-17 | |
http://www.ubuntu.com/usn/usn-379-1 | 2018-10-17 | |
https://access.redhat.com/security/cve/CVE-2006-4810 | 2006-11-08 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1618203 | 2006-11-08 |