Skip to main content

Numeric Errors

CVE-2012-3368

Severity Low
Score 2.6/10

Summary

Integer signedness error in attach.c in dtach 0.8 allows remote attackers to obtain sensitive information from daemon stack memory in opportunistic circumstances by reading application data after an improper connection-close request, as demonstrated by running an IRC client in dtach.

  • HIGH
  • NETWORK
  • NONE
  • NONE
  • PARTIAL
  • NONE

CWE-189 - Numeric Errors

Weaknesses in this category are related to improper calculation or conversion of numbers.

References

Advisory Timeline

  • Published