WordNet: Execution of arbitrary code Multiple vulnerabilities were found in WordNet, possibly allowing for the execution of arbitrary code. wordnet 2008-10-07 2008-10-07 211491 local, remote 3.0-r2 3.0-r2

WordNet is a large lexical database of English.

Jukka Ruohonen initially reported a boundary error within the searchwn() function in src/wn.c. A thorough investigation by the oCERT team revealed several other vulnerabilities in WordNet:

There is no known workaround at this time.

All WordNet users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=app-dicts/wordnet-3.0-r2"
CVE-2008-2149 CVE-2008-3908 p-y p-y keytoaster