VYPR

by University Of Minnesota

CVEs (3)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2002-03710.080.60Jul 3, 2002Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 allows remote attackers to execute arbitrary code via a gopher:// URL that redirects the user to a real or simulated gopher server that sends a long response.
CVE-2005-27720.060.33Sep 2, 2005Multiple stack-based buffer overflows in University of Minnesota gopher client 3.0.9 allow remote malicious servers to execute arbitrary code via (1) a long "+VIEWS:" reply, which is not properly handled in the VIfromLine function, and (2) certain arguments when launching third party programs such as a web browser from a web link, which is not properly handled in the FIOgetargv function.
CVE-2005-18530.000.00Aug 3, 2005gopher.c in the Gopher client 3.0.5 does not properly create temporary files, which allows local users to gain privileges.