Vulnerability Description
Multiple buffer overflows in libUil (libUil.so) in OpenMotif 2.2.3, and possibly other versions, allows attackers to execute arbitrary code via the (1) diag_issue_diagnostic function in UilDiags.c and (2) open_source_file function in UilSrcSrc.c.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Integrated Computer Solutions | Openmotif | 2.2.3 |
References
- http://marc.info/?l=full-disclosure&m=113349242925897&w=2
- http://securitytracker.com/id?1015303
- http://www.redhat.com/support/errata/RHSA-2006-0272.html
- http://www.redhat.com/support/errata/RHSA-2008-0261.html
- http://www.securityfocus.com/archive/1/418459/100/0/threaded
- http://www.securityfocus.com/bid/15684
- http://www.securityfocus.com/bid/15686
- http://www.vupen.com/english/advisories/2005/2709
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23388
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23389
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3
- http://marc.info/?l=full-disclosure&m=113349242925897&w=2
- http://securitytracker.com/id?1015303
- http://www.redhat.com/support/errata/RHSA-2006-0272.html
- http://www.redhat.com/support/errata/RHSA-2008-0261.html
FAQ
What is CVE-2005-3964?
CVE-2005-3964 is a vulnerability with a CVSS score of 7.5 (HIGH). Multiple buffer overflows in libUil (libUil.so) in OpenMotif 2.2.3, and possibly other versions, allows attackers to execute arbitrary code via the (1) diag_issue_diagnostic function in UilDiags.c and...
How severe is CVE-2005-3964?
CVE-2005-3964 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-3964?
Check the references section above for vendor advisories and patch information. Affected products include: Integrated Computer Solutions Openmotif.