10
CVSSv2

CVE-2000-0584

Published: 02/07/2000 Updated: 03/05/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Canna input system allows remote malicious users to execute arbitrary commands via an SR_INIT command with a long user name or group name.

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 3.5

debian debian linux 2.1

Exploits

source: wwwsecurityfocuscom/bid/1445/info A vulnerability exists in the 'canna' package, as distributed with a number of free operating systems, and available for other systems Version 35b2 is vulnerable It is assumed versions prior to this are also vulnerable By supplying an overly large username or groupname with the IR_INIT comman ...