CVE-2013-0251: Buffer Overflow
Published Mar 19, 2013
·Updated
Stack-based buffer overflow in llogincircuit.cc in latd 1.25 through 1.30 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in the llogin version.
Affected Software
6 affected components
Debian Latd=1.25
Debian Latd=1.26
Debian Latd=1.27
Debian Latd=1.28
Debian Latd=1.29
Debian Latd=1.30
Event History
Mar 19, 2013
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-0251?
CVE-2013-0251 has a high severity due to the potential for remote denial of service and arbitrary code execution.
2
How do I fix CVE-2013-0251?
To fix CVE-2013-0251, upgrade your latd installation to version 1.31 or later.
3
What can exploit CVE-2013-0251?
CVE-2013-0251 can be exploited by sending a long string in the llogin version to the affected latd service.
4
Which versions of latd are affected by CVE-2013-0251?
Versions 1.25 through 1.30 of latd are affected by CVE-2013-0251.
5
What are the potential impacts of CVE-2013-0251?
The potential impacts of CVE-2013-0251 include application crashes and possible remote code execution.