PT-2006-1256 · Cray · Unicos
Published
2006-01-11
·
Updated
2017-07-20
·
CVE-2006-0178
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
UNICOS version 9.0.2.2
Description
A format string issue exists in the /bin/ftp program, potentially allowing local users to have an unknown impact via format string specifiers in the "quote" command. The program is not setuid and not normally called from remote programs, which may limit the attack vector.
Recommendations
For UNICOS version 9.0.2.2, at the moment, there is no information about a newer version that contains a fix for this issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Unicos