Integer overflow in the load_iface function in Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 might allow context-dependent attackers to execute arbitrary code via a (1) file or (2) socket that provides configuration data with many entries, leading to a heap-based buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gnustep_base | Gnustep | * | 1.19.3 (including) |
Gnustep_base | Gnustep | 1.11.2 (including) | 1.11.2 (including) |
Gnustep_base | Gnustep | 1.12.0 (including) | 1.12.0 (including) |
Gnustep_base | Gnustep | 1.13.0 (including) | 1.13.0 (including) |
Gnustep_base | Gnustep | 1.14.0 (including) | 1.14.0 (including) |
Gnustep_base | Gnustep | 1.15.0 (including) | 1.15.0 (including) |
Gnustep_base | Gnustep | 1.15.1 (including) | 1.15.1 (including) |
Gnustep_base | Gnustep | 1.15.2 (including) | 1.15.2 (including) |
Gnustep_base | Gnustep | 1.15.4 (including) | 1.15.4 (including) |
Gnustep_base | Gnustep | 1.17.0 (including) | 1.17.0 (including) |
Gnustep_base | Gnustep | 1.18.0 (including) | 1.18.0 (including) |
Gnustep_base | Gnustep | 1.19.0 (including) | 1.19.0 (including) |
Gnustep_base | Gnustep | 1.19.1 (including) | 1.19.1 (including) |
Gnustep_base | Gnustep | 1.19.2 (including) | 1.19.2 (including) |