Index: vuln.xml =================================================================== RCS file: /home/pcvs/ports/security/vuxml/vuln.xml,v retrieving revision 1.1189 diff -u -r1.1189 vuln.xml --- vuln.xml 11 Oct 2006 08:32:04 -0000 1.1189 +++ vuln.xml 13 Oct 2006 17:39:57 -0000 @@ -34,6 +34,34 @@ --> + + Google Earth -- Heap Overflow in the KML engine + + + google-earth + 0 + + + + +

JAAScois reports:

+

While processing KML/KMZ data Google Earth fails to verify + its size prior to copying it into a fixed-sized buffer. + This can be exploited as a buffer-overflow vulnerability to + cause the application to crash and/or to execute arbitrary + code.

+ +
+ + 20464 + http://www.jaascois.com/exploits/18602024/ + + + 2006-10-10 + 2006-10-13 + +
+ torrentflux -- User-Agent XSS Vulnerability