PT-2003-2181 · Tanne · Tanne
Published
2003-12-31
·
Updated
2008-09-05
·
CVE-2003-1236
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Tanne version 0.6.17
Description
The issue concerns multiple format string vulnerabilities in the logger function in netzio.c. These vulnerabilities allow remote attackers to execute arbitrary code via format string specifiers in syslog.
Recommendations
For Tanne version 0.6.17, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Tanne