Perdition Vanessa_Logger格式字符串漏洞

漏洞信息详情

Perdition Vanessa_Logger格式字符串漏洞

漏洞简介

Perdition 0.1.8版本的libvanessa_logger 0.0.1版本存在格式字符串漏洞。远程攻击者可以借助__vanessa_logger_log函数中的格式字符串说明符执行任意代码。

漏洞公告

FreeBSD has made a patch available for Perdition v0.0.1
The vendor has released an upgrade which addresses this issue.
Fixes:
Vanessa vanessa_logger 0.0.1

参考网址

来源: BID
名称: 3740
链接:http://www.securityfocus.com/bid/3740

来源: BUGTRAQ
名称: 20011225 Remote Root Hole in FreeBSD Ports
链接:http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2001-12/0260.html

来源: VULNWATCH
名称: 20011225 GOBBLES #17: perdition/vanessa_logger format string vuln
链接:http://archives.neohapsis.com/archives/vulnwatch/2001-q4/0082.html

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享