Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 23273 - GNATS (The GNU bug-tracking system) multiple buffer overflow vulnerabilities.
Summary: GNATS (The GNU bug-tracking system) multiple buffer overflow vulnerabilities.
Status: RESOLVED INVALID
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: All Linux
: High normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2003-06-22 08:56 UTC by solar (RETIRED)
Modified: 2003-06-24 13:56 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description solar (RETIRED) gentoo-dev 2003-06-22 08:56:14 UTC
Only GNATS I see in portage is app-xemacs/gnats-1.15
-----------------------------------------------------

GNATS is a portable incident/bug report/help request-tracking system which runs
on UNIX-like operating systems.  It easily handles thousands of problem reports,
has been in wide use since the early 90s,  and can do most of its operations
over e-mail.

== Full-Disclosure Advisory == 
http://marc.theaimsgroup.com/?l=full-disclosure&m=105620754230671&w=2

== Exploit Code ==
http://packetstorm.linuxsecurity.com/filedesc/0x82-GNATS_sux.c.html
http://packetstorm.linuxsecurity.com/filedesc/0x82-GNATS_own.c.html
Comment 1 Jon Portnoy (RETIRED) gentoo-dev 2003-06-22 11:09:57 UTC
Wrong category.

Moving.
Comment 2 Daniel Ahlberg (RETIRED) gentoo-dev 2003-06-24 13:56:13 UTC
app-xemacs/gnats is a frontend to gnats. The "real" gnats is not in portage.