A local buffer overflow vulnerabality has been reported to exist in XShisen due to improper handling of user-supplied data. The problem is reportedly caused by 'XSHISENLIB' environment variable. It may be possible to cause a buffer overflow condition by supplying more than 100 bytes of data. Successful exploitation may allow an attacker to ultimately execute arbitrary code in the context of the user who is running the vulnerable software in order to gain unauthorized access to a system. XShisen version 1.51 has been reported to be prone to these issue however other versions may be affected as well.
A local buffer overflow vulnerabality has been reported to exist in XShisen due to improper handling of user-supplied data. The problem is reportedly caused by 'XSHISENLIB' environment variable. It may be possible to cause a buffer overflow condition by supplying more than 100 bytes of data. Successful exploitation may allow an attacker to ultimately execute arbitrary code in the context of the user who is running the vulnerable software in order to gain unauthorized access to a system. XShisen version 1.51 has been reported to be prone to these issue however other versions may be affected as well.