ELOG Web Logbook缓冲区溢出漏洞

漏洞信息详情

ELOG Web Logbook缓冲区溢出漏洞

漏洞简介

elog 2.5.7 r1558-4之前版本的elogd.c中存在缓冲区溢出漏洞。攻击者可以在写入日志文件时借助未明变量执行代码。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

Elog Web Logbook Elog Web Logbook 2.5.7

Debian elog_2.5.7+r1558-4+sarge2_alpha.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_alpha.deb

Debian elog_2.5.7+r1558-4+sarge2_amd64.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_amd64.deb

Debian elog_2.5.7+r1558-4+sarge2_arm.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_arm.deb

Debian elog_2.5.7+r1558-4+sarge2_hppa.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_hppa.deb

Debian elog_2.5.7+r1558-4+sarge2_i386.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_i386.deb

Debian elog_2.5.7+r1558-4+sarge2_ia64.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_ia64.deb

Debian elog_2.5.7+r1558-4+sarge2_m68k.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_m68k.deb

Debian elog_2.5.7+r1558-4+sarge2_mips.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_mips.deb

Debian elog_2.5.7+r1558-4+sarge2_mipsel.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_mipsel.deb

Debian elog_2.5.7+r1558-4+sarge2_powerpc.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_powerpc.deb

Debian elog_2.5.7+r1558-4+sarge2_s390.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_s390.deb

Debian elog_2.5.7+r1558-4+sarge2_sparc.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_sparc.deb

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享