PublicDate: 2007-09-21 19:17:00 UTC Candidate: CVE-2007-5029 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5029 Description: Dibbler 0.6.0 does not verify that certain length parameters are appropriate for buffer sizes, which allows remote attackers to trigger a buffer over-read and cause a denial of service (daemon crash), as demonstrated by incorrect behavior of the TSrvMsg constructor in SrvMessages/SrvMsg.cpp when (1) reading the option code and option length and (2) parsing options. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: dapper_dibbler: DNE edgy_dibbler: needed feisty_dibbler: needed (reached end-of-life) gutsy_dibbler: released (0.6.1-1) hardy_dibbler: released (0.6.1-1) devel_dibbler: released (0.6.1-1) upstream_dibbler: released (0.6.1)