PT-2005-2710 · Ibsh · Iron Bars Shell

Published

2005-05-24

·

Updated

2008-09-05

·

CVE-2005-1738

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Iron Bars SHell (ibsh) versions prior to 0.3d
Description The issue allows users to access files outside the home directory and possibly execute arbitrary code via certain inputs that are not properly handled in a syslog call. This is due to a format string vulnerability in the logPrintBadfile function in delbadfiles.c.
Recommendations For versions prior to 0.3d, update to version 0.3d or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive files and directories to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1738

Affected Products

Iron Bars Shell