7.2
CVSSv2

CVE-2001-1034

Published: 23/09/2001 Updated: 19/12/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter.

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 4.4

Vendor Advisories

A set of problems have been discovered in Hylafax, a flexible client/server fax software distributed with many GNU/Linux distributions Quoting SecurityFocus the problems are in detail: A format string vulnerability makes it possible for users to potentially execute arbitrary code on some implementations Due to insufficient checking of inpu ...