CVE-2008-3323
Published Jul 28, 2008setup.exe before 2.573.2.3 in Cygwin does not properly verify the authenticity of packages, which allows remote Cygwin mirror servers or man-in-the-middle attackers to execute arb…
Vendor/product archive
2 CVEs tagged to redhat / cygwin — 0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.
setup.exe before 2.573.2.3 in Cygwin does not properly verify the authenticity of packages, which allows remote Cygwin mirror servers or man-in-the-middle attackers to execute arb…
Heap-based buffer overflow in cygwin1.dll in Cygwin 1.5.7 and earlier allows context-dependent attackers to execute arbitrary code via a filename with a certain length, as demonst…