Family: Debian Local Security Checks --> Category: infos
[DSA076] DSA-076-1 most Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
Pavel Machek has found a buffer overflow in the `most' pager program.
The problem is part of most's tab expansion where the program would
write beyond the bounds two array variables when viewing a malicious
file. This could lead into other data structures being overwritten
which in turn could enable most to execute arbitrary code being able
to compromise the users environment.
This has been fixed in the upstream version 4.9.2 and an updated
version of 4.9.0 for Debian GNU/Linux 2.2.
We recommend that you upgrade your most package immediately.
Solution : http://www.debian.org/security/2001/dsa-076
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.