Heap-based buffer overflow in the strip_escapes function in signal.c in GNU ed before 1.0 allows context-dependent or user-assisted attackers to execute arbitrary code via a long filename. NOTE: since ed itself does not typically run with special privileges, this issue only crosses privilege boundaries when ed is invoked as a third-party component.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade ed | Dec 1, 2016 | Sep 4, 2008 |
| Debian | — | Upgrade ed | Jul 30, 2024 | Sep 4, 2008 |
| Gentoo Linux | — | Upgrade sys-apps/ed. | Oct 30, 2017 | Sep 4, 2008 |
| Oracle_linux | — | Upgrade ed | Oct 16, 2024 | Sep 4, 2008 |
| Suse | — | Upgrade ed | Feb 17, 2015 | Jun 28, 2013 |
| Vmsa 2009 0003 | — | Upgrade VMware ESX 3.5 to build number 143198 | Jan 2, 2014 | Sep 4, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub