inotify-tools

Page content
  • Author: voroskoi
  • Vulnerable: 3.8-1
  • Unaffected: 3.8-2terminus1

A vulnerability has been reported in inotify-tools, which can potentially be exploited by malicious users to compromise an application using the library. The vulnerability is caused due to a boundary error within the “inotifytools_snprintf()” function in src/inotifytools.c. This can be exploited to cause a buffer overflow by e.g. creating a file with an overly long filename in a specific directory. Successful exploitation may allow the execution of arbitrary code with privileges of the application using the affected library.

CVEs: