10
CVSSv2

CVE-2004-0623

Published: 06/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in misc.c in GNU GNATS 4.00 may allow remote malicious users to execute arbitrary code via format string specifiers in a string that gets logged by syslog.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu gnats 4.0

gnu gnats 3.113.1

gnu gnats 3.113.1.6

gnu gnats 3.0_02

gnu gnats 3.113

gnu gnats 3.14b

gnu gnats 3.2

Vendor Advisories

Khan Shirani discovered a format string vulnerability in gnats, the GNU problem report management system This problem may be exploited to execute arbitrary code For the stable distribution (woody) this problem has been fixed in version 3999beta1+cvs20020303-2 For the unstable distribution (sid) this problem has been fixed in version 40-7 We ...