Alerts This Week
Warning Icon 1 541
Alerts This Week
Warning Icon 1 541

Gentoo: GLSA-200406-02 High: Tripwire Code Execution Risk

gentoo
Calendar Grey June 4, 2004
Dist Gentoo Esm H88
Gentoo Linux Advisory GLSA 200407-01 highlights a critical buffer overflow issue in rsync that allows unauthorized command execution.
A vulnerability allowing arbitrary code execution under certain circumstances has been found.

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200406-02
                                            https://security.gentoo.org/

Severity: High Title: tripwire: Format string vulnerability Date: June 04, 2004 Bugs: #52945 ID: 200406-02

Synopsis ======= A vulnerability allowing arbitrary code execution under certain circumstances has been found.
Background ========= tripwire is an open source file integrity checker.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-admin/tripwire <= 2.3.1.2 >= 2.3.1.2-r1
========== The code that generates email reports contains a format string vulnerability in pipedmailmessage.cpp.
Impact ===== With a carefully crafted filename on...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3374891_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here