CVE-2005-0011 - Afraid Acquisition
Description
Multiple vulnerabilities in fliccd when installed setuid root as part of the kdeedu Kstars support for Instrument Neutral Distributed Interface (INDI) in KDE 3.3 to 3.3.2 allow local users and remote attackers to execute arbitrary code via stack-based buffer overflows.
Reference
http://www.kde.org/info/security/advisory-20050215-1.txt http://www.redhat.com/archives/fedora-announce-list/2005-February/msg00044.html http://www.gentoo.org/security/en/glsa/glsa-200502-23.xml http://secunia.com/advisories/14306