Your submission was sent successfully! Close

CVE-2009-2905

Published: 29 September 2009

Heap-based buffer overflow in textbox.c in newt 0.51.5, 0.51.6, and 0.52.2 allows local users to cause a denial of service (application crash) or possibly execute arbitrary code via a request to display a crafted text dialog box.

Priority

Medium

Status

Package Release Status
newt
Launchpad, Ubuntu, Debian
dapper
Released (0.51.6-31ubuntu1.1)
hardy
Released (0.52.2-11.2ubuntu1.1)
intrepid
Released (0.52.2-11.3ubuntu1.1)
jaunty
Released (0.52.2-11.3ubuntu3.1)
upstream Needs triage