CVE Vulnerabilities

CVE-2010-1620

Published: May 12, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the load_iface function in Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 might allow context-dependent attackers to execute arbitrary code via a (1) file or (2) socket that provides configuration data with many entries, leading to a heap-based buffer overflow.

Affected Software

NameVendorStart VersionEnd Version
Gnustep_baseGnustep*1.19.3 (including)
Gnustep_baseGnustep1.11.2 (including)1.11.2 (including)
Gnustep_baseGnustep1.12.0 (including)1.12.0 (including)
Gnustep_baseGnustep1.13.0 (including)1.13.0 (including)
Gnustep_baseGnustep1.14.0 (including)1.14.0 (including)
Gnustep_baseGnustep1.15.0 (including)1.15.0 (including)
Gnustep_baseGnustep1.15.1 (including)1.15.1 (including)
Gnustep_baseGnustep1.15.2 (including)1.15.2 (including)
Gnustep_baseGnustep1.15.4 (including)1.15.4 (including)
Gnustep_baseGnustep1.17.0 (including)1.17.0 (including)
Gnustep_baseGnustep1.18.0 (including)1.18.0 (including)
Gnustep_baseGnustep1.19.0 (including)1.19.0 (including)
Gnustep_baseGnustep1.19.1 (including)1.19.1 (including)
Gnustep_baseGnustep1.19.2 (including)1.19.2 (including)
Gnustep-baseUbuntudapper*
Gnustep-baseUbuntuhardy*
Gnustep-baseUbuntujaunty*
Gnustep-baseUbuntukarmic*
Gnustep-baseUbuntulucid*
Gnustep-baseUbuntumaverick*
Gnustep-baseUbuntunatty*
Gnustep-baseUbuntuoneiric*
Gnustep-baseUbuntuquantal*
Gnustep-baseUbunturaring*
Gnustep-baseUbuntusaucy*
Gnustep-baseUbuntuupstream*
Gnustep-baseUbuntuutopic*
Gnustep-baseUbuntuvivid*
Gnustep-baseUbuntuwily*

References