Vulnerabilities (CVE)

Filtered by vendor Gnustep Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-2980 1 Gnustep 1 Base 2024-02-28 4.3 MEDIUM N/A
Tools/gdomap.c in gdomap in GNUstep Base 1.24.6 and earlier, when run in daemon mode, does not properly handle the file descriptor for the logger, which allows remote attackers to cause a denial of service (abort) via an invalid request.
CVE-2010-1457 1 Gnustep 1 Gnustep Base 2024-02-28 4.9 MEDIUM N/A
Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 allows local users to read arbitrary files via a (1) -c or (2) -a option, which prints file contents in an error message.
CVE-2010-1620 1 Gnustep 1 Gnustep Base 2024-02-28 7.2 HIGH N/A
Integer overflow in the load_iface function in Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 might allow context-dependent attackers to execute arbitrary code via a (1) file or (2) socket that provides configuration data with many entries, leading to a heap-based buffer overflow.