PT-2004-1074 · Unknown+1 · Libuser-Devel+1
Published
2004-12-31
·
Updated
2017-07-11
·
CVE-2004-2392
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
libuser versions 0.32 through 0.51.7
libuser-devel version 0.32
Description
The issue allows attackers to cause a denial of service, potentially leading to a crash or disk consumption, via unknown attack vectors related to read failures and other bugs. This can be exploited remotely.
Recommendations
For libuser versions 0.32 through 0.51.7, consider restricting access to the service until a patch is available.
For libuser-devel version 0.32, restrict usage to minimize the risk of exploitation.
As a temporary workaround, consider disabling the service related to libuser until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Libuser
Libuser-Devel