CVE-2009-4012

Publication date 14 January 2009

Last updated 24 July 2024


Ubuntu priority

Multiple integer overflows in LibThai before 0.1.13 might allow context-dependent attackers to execute arbitrary code via long strings that trigger heap-based buffer overflows, related to (1) thbrk/thbrk.c and (2) thwbrk/thwbrk.c. NOTE: some of these details are obtained from third party information.

Status

Package Ubuntu Release Status
libthai 9.10 karmic
Fixed 0.1.12-1ubuntu0.2
9.04 jaunty
Fixed 0.1.9-4ubuntu0.9.04.2
8.10 intrepid
Fixed 0.1.9-4ubuntu0.8.10.2
8.04 LTS hardy
Fixed 0.1.9-1ubuntu0.2
6.06 LTS dapper Ignored end of life

References

Related Ubuntu Security Notices (USN)

    • USN-887-1
    • LibThai vulnerability
    • 18 January 2010

Other references