First published: Tue Feb 21 2006(Updated: )
Off-by-one error in TIN 1.8.0 and earlier might allow attackers to execute arbitrary code via unknown vectors that trigger a buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tin Tin | =1.1_pl0 | |
Tin Tin | =1.4.3 | |
Tin Tin | =1.0_pl0 | |
Tin Tin | =1.4.5 | |
Tin Tin | =1.4.7 | |
Tin Tin | =1.2_pl2 | |
Tin Tin | =1.4.6 | |
Tin Tin | =1.0_pl3 | |
Tin Tin | =1.4.0 | |
Tin Tin | =1.1_pl7 | |
Tin Tin | =1.1_pl6 | |
Tin Tin | =1.0_pl4 | |
Tin Tin | =1.0_pl1 | |
Tin Tin | =1.4.2 | |
Tin Tin | =1.1_pl2 | |
Tin Tin | =1.6.2 | |
Tin Tin | =1.1_pl3 | |
Tin Tin | =1.8.0 | |
Tin Tin | =1.1_pl8 | |
Tin Tin | =1.6.1 | |
Tin Tin | =1.1_pl5 | |
Tin Tin | =1.2_pl1 | |
Tin Tin | =1.1_pl1 | |
Tin Tin | =1.4.4 | |
Tin Tin | =1.6.0 | |
Tin Tin | =1.2_pl0 | |
Tin Tin | =1.4.1 | |
Tin Tin | =1.1_pl4 | |
Tin Tin | =1.0_pl5 | |
Tin Tin | =1.1_pl9 | |
Tin Tin | =1.0_pl2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0804 is considered a high-severity vulnerability due to its potential to allow arbitrary code execution through a buffer overflow.
To fix CVE-2006-0804, update to versions of TIN that are 1.8.1 or later, as these versions address the off-by-one error.
Versions of TIN affected by CVE-2006-0804 include 1.1_pl0, 1.4.3, 1.0_pl0, 1.4.5, 1.4.6, 1.4.7, and 1.8.0 among others.
CVE-2006-0804 is an off-by-one error that leads to a buffer overflow, allowing for potential arbitrary code execution.
Yes, CVE-2006-0804 can potentially be exploited remotely, making it critical for affected systems to be updated promptly.