traceroute-nanog 6.1.1 allows local users to overwrite unauthorized memory and possibly execute arbitrary code via certain nprobes and max_ttl arguments that cause an integer overflow that is used when allocating memory, which leads to a buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Traceroute-nanog | Ehud_gavron | 6.1.1 (including) | 6.1.1 (including) |
Traceroute-nanog | Ubuntu | dapper | * |
Traceroute-nanog | Ubuntu | devel | * |
Traceroute-nanog | Ubuntu | edgy | * |
Traceroute-nanog | Ubuntu | feisty | * |