CVE

Id
29047  
CVE No.
CVE-2007-5690  
Status
Candidate  
Description
** DISPUTED ** Buffer overflow in sethdlc.c in the Asterisk Zaptel 1.4.5.1 might allow local users to gain privileges via a long device name (interface name) in the ifr_name field. NOTE: the vendor disputes this issue, stating that the application requires root access, so privilege boundaries are not crossed.  
Phase
Assigned (20071029)  
Votes
None (candidate not yet proposed)  
Comments