漏洞信息详情
HylaFax主机名格式串漏洞
- CNNVD编号:CNNVD-200109-123
- 危害等级: 高危
- CVE编号:
CVE-2001-1034
- 漏洞类型:
格式化字符串
- 发布时间:
2001-09-23
- 威胁类型:
本地
- 更新时间:
2005-10-20
- 厂 商:
freebsd - 漏洞来源:
This vulnerability… -
漏洞简介
基于FreeBSD的Hylafax存在格式串漏洞。本地用户借助(1) faxrm或者(2)faxalter中-h hostname参数的格式说明执行任意代码。
漏洞公告
Fixes are available:
Hylafax Hylafax 4.1
-
Hylafax hylafax-4.1.3.tar.gz
ftp://ftp.hylafax.org/source/hylafax-4.1.3.tar.gz -
Mandrake hylafax-4.1-0.11mdk.i586.rpmLinux-Mandrake 7.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1-0.11mdk.i586.rpmLinux-Mandrake 7.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1-0.11mdk.i586.rpmMandrake Corporate Server 1.0.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.0.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1.3-1.1mdk.ia64.rpmMandrake Linux 8.1/ia64.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.0/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.2/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1-0.11mdk.i586.rpmLinux-Mandrake 7.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1-0.11mdk.i586.rpmLinux-Mandrake 7.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1-0.11mdk.i586.rpmMandrake Corporate Server 1.0.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.0.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1.3-1.1mdk.ia64.rpmMandrake Linux 8.1/ia64.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.0/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-client-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.2/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1-0.11mdk.i586.rpmLinux-Mandrake 7.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1-0.11mdk.i586.rpmLinux-Mandrake 7.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1-0.11mdk.i586.rpmMandrake Corporate Server 1.0.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.0.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1.3-1.1mdk.ia64.rpmMandrake Linux 8.1/ia64.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.0/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake hylafax-server-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.2/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.0.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-4.1.3-1.1mdk.ia64.rpmMandrake Linux 8.1/ia64.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.0/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.2/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-devel-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.0.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-devel-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.1.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-devel-4.1.3-1.1mdk.i586.rpmMandrake Linux 8.2.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-devel-4.1.3-1.1mdk.ia64.rpmMandrake Linux 8.1/ia64.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-devel-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.0/ppc.
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libhylafax4.1.1-devel-4.1.3-1.1mdk.ppc.rpmMandrake Linux 8.2/ppc.
http://www.mandrakesecure.net/en/ftp.php
Hylafax Hylafax 4.1.1
参考网址
来源: XF
名称: hylafax-hostname-format-string(7164)
链接:http://xforce.iss.net/static/7164.php
来源: BID
名称: 3357
链接:http://www.securityfocus.com/bid/3357
来源: BUGTRAQ
名称: 20010923 hylafax
链接:http://www.securityfocus.com/archive/1/215984
受影响实体
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END