Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

Gentoo: 2004-11-20 High: ez-ipupdate Format String Threat

gentoo
Calendar Grey November 11, 2004
Dist Gentoo Esm H88
Security Notice GLSA 200501-10: net-tools has a buffer overflow vulnerability permitting unauthorized command execution.
ez-ipupdate contains a format string vulnerability that could lead to execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200411-20 https://security.gentoo.org/ Severity: High Title: ez-ipupdate: Format string vulnerability Date: November 11, 2004 Bugs: #69658 ID: 200411-20

Synopsis ======= ez-ipupdate contains a format string vulnerability that could lead to execution of arbitrary code.
Background ========= ez-ipupdate is a utility for updating host name information for a large number of dynamic DNS services.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-dns/ez-ipupdate <= 3.0.11_beta8 >= 3.0.11_beta8-r1
========== Ulf Harnhammar from the Debian Security Audit Project discovered a format string vulnerability in ez-ipupdate.
Impact ===== An attacker could exploit this to exe...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3730310_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here