Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-3533
Description:Format string vulnerability in the window_error function in yelp- window.c in yelp in Gnome after 2.19.90 and before 2.24 allows remote attackers to execute arbitrary code via format string specifiers in an invalid URI on the command line, as demonstrated by use of yelp within (1) man or (2) ghelp URI handlers in Firefox, Evolution, and unspecified other programs.
Test IDs: 1.3.6.1.4.1.25623.1.0.61418   1.3.6.1.4.1.25623.1.0.61558   1.3.6.1.4.1.25623.1.0.61596   1.3.6.1.4.1.25623.1.0.860402   1.3.6.1.4.1.25623.1.0.840309   1.3.6.1.4.1.25623.1.0.61606  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-3533
BugTraq ID: 30690
http://www.securityfocus.com/bid/30690
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00222.html
http://www.mandriva.com/security/advisories?name=MDVSA-2008:175
http://secunia.com/advisories/31465
http://secunia.com/advisories/31620
http://secunia.com/advisories/31834
http://secunia.com/advisories/32629
SuSE Security Announcement: SUSE-SR:2008:024 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00000.html
http://www.ubuntu.com/usn/usn-638-1
http://www.vupen.com/english/advisories/2008/2393
XForce ISS Database: yelp-uri-format-string(44449)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44449




© 1998-2025 E-Soft Inc. All rights reserved.