CVE Vulnerabilities

CVE-2012-3368

Published: Jul 03, 2012 | Modified: Jul 04, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:P/I:N/A:N
RedHat/V2
5 LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V3
Ubuntu
LOW

Integer signedness error in attach.c in dtach 0.8 allows remote attackers to obtain sensitive information from daemon stack memory in opportunistic circumstances by reading application data after an improper connection-close request, as demonstrated by running an IRC client in dtach.

Affected Software

Name Vendor Start Version End Version
Dtach Redhat 0.8 (including) 0.8 (including)
Dtach Ubuntu hardy *
Dtach Ubuntu lucid *
Dtach Ubuntu natty *
Dtach Ubuntu oneiric *
Dtach Ubuntu precise *
Dtach Ubuntu upstream *

References