Format string vulnerability in stunnel 3.8 and earlier allows attackers to execute arbitrary commands via a malformed ident username.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Stunnel | Stunnel | 3.3 (including) | 3.3 (including) |
| Stunnel | Stunnel | 3.4a (including) | 3.4a (including) |
| Stunnel | Stunnel | 3.7 (including) | 3.7 (including) |
| Stunnel | Stunnel | 3.8 (including) | 3.8 (including) |
| Red Hat Linux 7.0 | RedHat | * |