Integer signedness error in attach.c in dtach 0.8 allows remote attackers to obtain sensitive information from daemon stack memory in opportunistic circumstances by reading application data after an improper connection-close request, as demonstrated by running an IRC client in dtach.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Dtach | Redhat | 0.8 (including) | 0.8 (including) |
Dtach | Ubuntu | hardy | * |
Dtach | Ubuntu | lucid | * |
Dtach | Ubuntu | natty | * |
Dtach | Ubuntu | oneiric | * |
Dtach | Ubuntu | precise | * |
Dtach | Ubuntu | upstream | * |