CVE Vulnerabilities

CVE-2000-0947

Published: Dec 19, 2000 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH command.

Affected Software

NameVendorStart VersionEnd Version
CfengineGnu1.5 (including)1.5 (including)
CfengineGnu1.5.3-4 (including)1.5.3-4 (including)
CfengineGnu1.6-a10 (including)1.6-a10 (including)

References