4.6
CVSSv2

CVE-2006-0083

Published: 09/01/2006 Updated: 20/07/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Format string vulnerability in the logging code of SMS Server Tools (smstools) 1.14.8 and previous versions allows local users to execute arbitrary code via unspecified attack vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

stefan frings sms server tools

Vendor Advisories

Debian Bug report logs - #347221 smstools: Format string attack in logging code Package: smstools; Maintainer for smstools is Debian Mobcom Maintainers <Debian-mobcom-maintainers@listsaliothdebianorg>; Source for smstools is src:smstools (PTS, buildd, popcon) Reported by: Steve Kemp <skx@debianorg> Date: Mon, 9 ...
Ulf Härnhammar from the Debian Security Audit project discovered a format string attack in the logging code of smstools, which may be exploited to execute arbitrary code with root privileges The original advisory for this issue said that the old stable distribution (woody) was not affected because it did not contain smstools This was incorrect, ...