CVE-2015-0843

yubiserver before 0.6 is prone to buffer overflows due to misuse of sprintf.
References
Link Resource
http://www.include.gr/debian/yubiserver/#changelog Release Notes
https://bugs.debian.org/796495 Issue Tracking Vendor Advisory Mailing List
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:debian:yubiserver:0.2-2:*:*:*:*:*:*:*
cpe:2.3:a:debian:yubiserver:0.5-2:*:*:*:*:*:*:*

History

06 Aug 2025, 15:39

Type Values Removed Values Added
References () http://www.include.gr/debian/yubiserver/#changelog - () http://www.include.gr/debian/yubiserver/#changelog - Release Notes
References () https://bugs.debian.org/796495 - () https://bugs.debian.org/796495 - Issue Tracking, Vendor Advisory, Mailing List
CPE cpe:2.3:a:debian:yubiserver:0.5-2:*:*:*:*:*:*:*
cpe:2.3:a:debian:yubiserver:0.2-2:*:*:*:*:*:*:*
First Time Debian
Debian yubiserver

30 Jun 2025, 18:38

Type Values Removed Values Added
Summary
  • (es) yubiserver anterior a 0.6 es propenso a desbordamientos de búfer debido al mal uso de sprintf.

27 Jun 2025, 19:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-120

27 Jun 2025, 09:15

Type Values Removed Values Added
Summary (en) yubiserver before 0.6 is to buffer overflows due to misuse of sprintf. (en) yubiserver before 0.6 is prone to buffer overflows due to misuse of sprintf.

26 Jun 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-26 22:15

Updated : 2025-08-06 15:39


NVD link : CVE-2015-0843

Mitre link : CVE-2015-0843

CVE.ORG link : CVE-2015-0843


JSON object : View

Products Affected

debian

  • yubiserver
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')