FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

unace -- multiple vulnerabilities

Affected packages
unace < 1.2b_2
0 < linux-unace

Details

VuXML ID 1d3a2737-7eb7-11d9-acf7-000854d03344
Discovery 2005-02-14
Entry 2005-02-22
Modified 2006-09-26

Ulf Härnhammar reports:

Secunia reports:

The vulnerabilities have been confirmed in version 1.2b. One of the buffer overflow vulnerabilities have also been reported in version 2.04, 2.2 and 2.5. Other versions may also be affected.

Successful exploitation may allow execution of arbitrary code.

References

CERT/CC Vulnerability Note 215006
CVE Name CVE-2005-0160
CVE Name CVE-2005-0161
Message 1109113175.421bb95705d42@webmail.uu.se
URL http://secunia.com/advisories/14359/