Candidate: CVE-2010-1620 PublicDate: 2010-05-12 11:46:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1620 Description: Integer overflow in the load_iface function in Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 might allow context-dependent attackers to execute arbitrary code via a (1) file or (2) socket that provides configuration data with many entries, leading to a heap-based buffer overflow. Ubuntu-Description: Notes: Bugs: http://savannah.gnu.org/bugs/?29755 https://bugs.launchpad.net/bugs/573108 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_gnustep-base: upstream_gnustep-base: released (1.20.0-1) dapper_gnustep-base: ignored (reached end-of-life) hardy_gnustep-base: ignored (reached end-of-life) jaunty_gnustep-base: ignored (reached end-of-life) karmic_gnustep-base: ignored (reached end-of-life) lucid_gnustep-base: ignored (reached end-of-life) maverick_gnustep-base: ignored (reached end-of-life) natty_gnustep-base: ignored (reached end-of-life) oneiric_gnustep-base: ignored (reached end-of-life) precise_gnustep-base: not-affected (1.22.1-2ubuntu2) quantal_gnustep-base: ignored (reached end-of-life) raring_gnustep-base: ignored (reached end-of-life) saucy_gnustep-base: ignored (reached end-of-life) trusty_gnustep-base: not-affected (1.24.0-1ubuntu3) trusty/esm_gnustep-base: DNE (trusty was not-affected [1.24.0-1ubuntu3]) utopic_gnustep-base: ignored (reached end-of-life) vivid_gnustep-base: ignored (reached end-of-life) vivid/stable-phone-overlay_gnustep-base: DNE vivid/ubuntu-core_gnustep-base: DNE wily_gnustep-base: ignored (reached end-of-life) xenial_gnustep-base: not-affected yakkety_gnustep-base: not-affected devel_gnustep-base: not-affected