CVE-2002-0374

Format string vulnerability in the logging function for the pam_ldap PAM LDAP module before version 144 allows attackers to execute arbitrary code via format strings in the configuration file name.
Configurations

Configuration 1 (hide)

cpe:2.3:a:padl_software:pam_ldap:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:38

Type Values Removed Values Added
References () ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-041.0.txt - () ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-041.0.txt -
References () http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0053.html - Vendor Advisory () http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0053.html - Vendor Advisory
References () http://marc.info/?l=bugtraq&m=103601912505261&w=2 - () http://marc.info/?l=bugtraq&m=103601912505261&w=2 -
References () http://www.iss.net/security_center/static/9018.php - () http://www.iss.net/security_center/static/9018.php -
References () http://www.mandrakesoft.com/security/advisories?name=MDKSA-2002:075 - () http://www.mandrakesoft.com/security/advisories?name=MDKSA-2002:075 -
References () http://www.redhat.com/support/errata/RHSA-2002-084.html - () http://www.redhat.com/support/errata/RHSA-2002-084.html -
References () http://www.redhat.com/support/errata/RHSA-2002-141.html - () http://www.redhat.com/support/errata/RHSA-2002-141.html -
References () http://www.redhat.com/support/errata/RHSA-2002-175.html - () http://www.redhat.com/support/errata/RHSA-2002-175.html -
References () http://www.redhat.com/support/errata/RHSA-2002-180.html - () http://www.redhat.com/support/errata/RHSA-2002-180.html -
References () http://www.securityfocus.com/bid/4679 - () http://www.securityfocus.com/bid/4679 -

Information

Published : 2002-05-29 04:00

Updated : 2025-04-03 01:03


NVD link : CVE-2002-0374

Mitre link : CVE-2002-0374

CVE.ORG link : CVE-2002-0374


JSON object : View

Products Affected

padl_software

  • pam_ldap