cve/2009/CVE-2009-5029.md
2024-05-26 14:27:05 +02:00

703 B

CVE-2009-5029

Description

Integer overflow in the __tzfile_read function in glibc before 2.15 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted timezone (TZ) file, as demonstrated using vsftpd.

POC

Reference

No PoCs from references.

Github