unace -- multiple vulnerabilities

Affected packages
unace < 1.2b_2
0 < linux-unace


VuXML ID 1d3a2737-7eb7-11d9-acf7-000854d03344
Discovery 2005-02-14
Entry 2005-02-22
Modified 2006-09-26

Ulf Härnhammar reports:

Secunia reports:

The vulnerabilities have been confirmed in version 1.2b. One of the buffer overflow vulnerabilities have also been reported in version 2.04, 2.2 and 2.5. Other versions may also be affected.

Successful exploitation may allow execution of arbitrary code.


CERT/CC Vulnerability Note 215006
CVE Name CVE-2005-0160
CVE Name CVE-2005-0161