CVE Vulnerabilities

CVE-2004-0450

Published: Aug 06, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Format string vulnerability in the printlog function in log2mail before 0.2.5.2 allows local users or remote attackers to execute arbitrary code via format string specifiers in a logfile monitored by log2mail.

Affected Software

Name Vendor Start Version End Version
Log2mail Log2mail 0.2.2.2 (including) 0.2.2.2 (including)
Log2mail Log2mail 0.2.5.0 (including) 0.2.5.0 (including)
Log2mail Log2mail 0.2.5.1 (including) 0.2.5.1 (including)
Log2mail Log2mail 0.2.5.2 (including) 0.2.5.2 (including)

References