PublicDate: 2007-07-03 01:30:00 UTC Candidate: CVE-2007-2835 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2835 Description: Multiple stack-based buffer overflows in (1) CCE_pinyin.c and (2) xl_pinyin.c in ImmModules/cce/ in unicon-imc2 3.0.4, as used by zhcon and other applications, allow local users to gain privileges via a long HOME environment variable. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_unicon: ignored (reached end-of-life) edgy_unicon: needed (reached end-of-life) feisty_unicon: needed (reached end-of-life) gutsy_unicon: released (3.0.4-12) hardy_unicon: released (3.0.4-12) intrepid_unicon: released (3.0.4-12) jaunty_unicon: released (3.0.4-12) karmic_unicon: released (3.0.4-12) devel_unicon: released (3.0.4-12) upstream_unicon: needs-triage