CVE-2009-1577
EPSS 15.5%
Description
Multiple stack-based buffer overflows in the putstring function in find.c in Cscope before 15.6 allow user-assisted remote attackers to execute arbitrary code via a long (1) function name or (2) symbol in a source-code file.
How to fix CVE-2009-1577
To remediate CVE-2009-1577, upgrade the affected package to a fixed version below.
- Debian/cscope—upgrade to 15.6-1 or later
Is CVE-2009-1577 being exploited?
Moderate — EPSS is 15.5%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 15.6-1