Format string vulnerability in the log function in SUS 2.0.2, and other versions before 2.0.6, allows local users to execute arbitrary code via format string specifiers in a command line argument that is passed directly to syslog.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2004-12-31 05:00
Updated : 2024-02-04 16:31
NVD link : CVE-2004-1469
Mitre link : CVE-2004-1469
CVE.ORG link : CVE-2004-1469
JSON object : View
Products Affected
peter_d._gray
- sus
CWE