Candidate: CVE-2014-0019 PublicDate: 2014-02-04 21:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0019 Description: Stack-based buffer overflow in socat 1.3.0.0 through 1.7.2.2 and 2.0.0-b1 through 2.0.0-b6 allows local users to cause a denial of service (segmentation fault) via a long server name in the PROXY-CONNECT address in the command line. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=736993 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_socat: upstream_socat: released (1.7.2.3) lucid_socat: ignored (reached end-of-life) precise_socat: ignored (reached end-of-life) precise/esm_socat: DNE (precise was needed) quantal_socat: ignored (reached end-of-life) saucy_socat: ignored (reached end-of-life) trusty_socat: not-affected (1.7.2.3-1) trusty/esm_socat: not-affected (1.7.2.3-1) utopic_socat: not-affected (1.7.2.3-1) vivid_socat: not-affected (1.7.2.3-1) vivid/stable-phone-overlay_socat: DNE vivid/ubuntu-core_socat: DNE wily_socat: not-affected (1.7.2.3-1) xenial_socat: not-affected (1.7.2.3-1) yakkety_socat: not-affected (1.7.2.3-1) zesty_socat: not-affected (1.7.2.3-1) devel_socat: not-affected (1.7.2.3-1)