CVE-2004-0451

Multiple format string vulnerabilities in the (1) logquit, (2) logerr, or (3) loginfo functions in Software Upgrade Protocol (SUP) allows remote attackers to execute arbitrary code via format string specifiers in messages that are logged by syslog.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sup:sup:1.8:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:alpha:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:arm:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:hppa:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ia-32:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ia-64:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:m68k:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:mips:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:mipsel:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:ppc:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:s-390:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.0:*:sparc:*:*:*:*:*

History

20 Nov 2024, 23:48

Type Values Removed Values Added
References () http://securitytracker.com/id?1010539 - () http://securitytracker.com/id?1010539 -
References () http://www.debian.org/security/2004/dsa-521 - Patch, Vendor Advisory () http://www.debian.org/security/2004/dsa-521 - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/10571 - Patch, Vendor Advisory () http://www.securityfocus.com/bid/10571 - Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/16459 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/16459 -

Information

Published : 2004-12-06 05:00

Updated : 2024-11-20 23:48


NVD link : CVE-2004-0451

Mitre link : CVE-2004-0451

CVE.ORG link : CVE-2004-0451


JSON object : View

Products Affected

debian

  • debian_linux

sup

  • sup