{"id":"CVE-2012-4527","details":"Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file name.  NOTE: it is not clear whether this is a vulnerability.","modified":"2026-04-10T03:42:29.340900Z","published":"2012-11-21T23:55:01Z","references":[{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=867790"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2012-November/091173.html"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2012-November/091206.html"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2012-November/091377.html"},{"type":"WEB","url":"http://lists.opensuse.org/opensuse-updates/2012-11/msg00003.html"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/10/18/12"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/10/18/9"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/11/20/1"},{"type":"WEB","url":"http://www.securityfocus.com/bid/56114"}],"schema_version":"1.7.5"}