PT-2002-1552 · Posadis · Posadis Dns Server
Published
2002-08-12
·
Updated
2008-09-05
·
CVE-2002-0501
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Posadis DNS server versions prior to m5pre2
Description
The issue concerns a format string vulnerability in the log print() function. This vulnerability potentially allows local users and possibly remote attackers to execute arbitrary code via format strings inserted into logging messages.
Recommendations
For versions prior to m5pre2, update to version m5pre2 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Posadis Dns Server