~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2005-4895

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2005-4895
2
 
PublicDate: 2012-07-25
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4895
5
 
 http://kqueue.org/blog/2012/03/05/memory-allocator-security-revisited/
6
 
 http://code.google.com/p/gperftools/source/browse/tags/perftools-0.4/ChangeLog
7
 
Description:
8
 
 Multiple integer overflows in TCMalloc (tcmalloc.cc) in gperftools before
9
 
 0.4 make it easier for context-dependent attackers to perform
10
 
 memory-related attacks such as buffer overflows via a large size value,
11
 
 which causes less memory to be allocated than expected.
12
 
Ubuntu-Description:
13
 
Notes:
14
 
Bugs:
15
 
Priority: medium
16
 
Discovered-by:
17
 
Assigned-to:
18
 
 
19
 
Patches_google-perftools:
20
 
upstream_google-perftools: not-affected
21
 
hardy_google-perftools: not-affected (0.8-5)
22
 
lucid_google-perftools: not-affected
23
 
natty_google-perftools: not-affected
24
 
oneiric_google-perftools: not-affected
25
 
precise_google-perftools: not-affected
26
 
devel_google-perftools: not-affected (2.0-3)