4.1
CVSSv2

CVE-2008-1628

Published: 02/04/2008 Updated: 08/08/2017
CVSS v2 Base Score: 4.1 | Impact Score: 6.4 | Exploitability Score: 2.7
VMScore: 365
Vector: AV:L/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in the audit_log_user_command function in lib/audit_logging.c in Linux Audit prior to 1.7 might allow remote malicious users to execute arbitrary code via a long command argument. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

linux audit

Vendor Advisories

Debian Bug report logs - #475227 auditd: CVE-2008-1628 buffer overflow in audit_log_user_command function might lead to code execution Package: auditd; Maintainer for auditd is Laurent Bigonville <bigon@debianorg>; Source for auditd is src:audit (PTS, buildd, popcon) Reported by: Nico Golde <nion@debianorg> Date: W ...