Unspecified vulnerability in Window Maker 0.80.2 and earlier allows attackers to perform unknown actions via format string specifiers in a font specification in WMGLOBAL, probably a format string vulnerability.
The product uses a function that accepts a format string as an argument, but the format string originates from an external source.
Link | Tags |
---|---|
http://www.windowmaker.org/src/ChangeLog | |
http://securitytracker.com/id?1011918 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17845 | vdb entry |
http://www.osvdb.org/11108 | vdb entry |
http://www.securityfocus.com/bid/11512 | patch vdb entry |
http://secunia.com/advisories/12961 | third party advisory vendor advisory |