CVE-2007-0235

Impact:
Moderate
Public Date:
2007-01-14
Bugzilla:
222637: CVE-2007-0235 Stack overflow libgtop when pathname of mmap()-ed file is too long

The MITRE CVE dictionary describes this issue as:

Stack-based buffer overflow in the glibtop_get_proc_map_s function in libgtop before 2.14.6 (libgtop2) allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a process with a long filename that is mapped in its address space, which triggers the overflow in gnome-system-monitor.

Find out more about CVE-2007-0235 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

Not vulnerable. This issue did not affect the versions of libgtop as shipped with Red Hat Enterprise Linux 2.1 or 3.

Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

This flaw affects Red Hat Enterprise Linux 4 and is being tracked via the following bug:
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=249884

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 4 (libgtop2) RHSA-2007:0765 2007-08-07

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.