>> Redhat Security Update Fixes gedit Format String Vulnerability
Title : Redhat Security Update Fixes gedit Format String Vulnerability VUPEN ID : VUPEN/ADV-2005-0755 CVE ID : CVE-2005-1686 CWE ID : CWE-
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-06-14
Technical Description
Redhat has released a security patch to correct a vulnerability identified in gedit. This flaw is due to a format string error when opening files with filenames containing format specifiers, which could be exploited by attackers to execute arbitrary code with the privileges of the gedit user. For additional information, see : VUPEN/ADV-2005-0720