Vulnonym.org

CVE-2005-0011 - Afraid Acquisition

Description

Multiple vulnerabilities in fliccd when installed setuid root as part of the kdeedu Kstars support for Instrument Neutral Distributed Interface (INDI) in KDE 3.3 to 3.3.2 allow local users and remote attackers to execute arbitrary code via stack-based buffer overflows.

Reference

http://www.kde.org/info/security/advisory-20050215-1.txt http://www.redhat.com/archives/fedora-announce-list/2005-February/msg00044.html http://www.gentoo.org/security/en/glsa/glsa-200502-23.xml http://secunia.com/advisories/14306