PT-2004-1074 · Unknown+1 · Libuser-Devel+1

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-2392

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions libuser versions 0.32 through 0.51.7 libuser-devel version 0.32
Description The issue allows attackers to cause a denial of service, potentially leading to a crash or disk consumption, via unknown attack vectors related to read failures and other bugs. This can be exploited remotely.
Recommendations For libuser versions 0.32 through 0.51.7, consider restricting access to the service until a patch is available. For libuser-devel version 0.32, restrict usage to minimize the risk of exploitation. As a temporary workaround, consider disabling the service related to libuser until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-07037
BDU:2015-07038
CVE-2004-2392

Affected Products

Libuser
Libuser-Devel