Buffer overflow in the socket_getline function in Newspost 2.1.1 and earlier allows remote malicious NNTP servers to execute arbitrary code via a long string without a newline character.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Newspost | Newspost | * | 2.1.1 (including) |
Newspost | Ubuntu | dapper | * |
Newspost | Ubuntu | devel | * |
Newspost | Ubuntu | edgy | * |
Newspost | Ubuntu | feisty | * |