Format string vulnerability in the logmsg function in svc.c for Pound 1.5 and previous versions allows remote malicious users to execute arbitrary code via format string specifiers in syslog messages.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apsis pound 1.0 |
||
apsis pound 1.1 |
||
apsis pound 1.2 |
||
apsis pound 1.3 |
||
apsis pound 1.4 |
||
apsis pound 1.5 |