Heap-based buffer overflow in textbox.c in newt 0.51.5, 0.51.6, and 0.52.2 allows local users to cause a denial of service (application crash) or possibly execute arbitrary code via a request to display a crafted text dialog box.
2009-09-29T19:30:00.687
2025-04-09T00:30:58.490
Deferred
CVSSv2: 4.6 (MEDIUM)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fedorahosted | newt | 0.51.5 | Yes |
Application | fedorahosted | newt | 0.51.6 | Yes |
Application | fedorahosted | newt | 0.52.2 | Yes |