Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

TANne Session Manager SysLog Format String Vulnerability

TANne is a freely available, open source session management package. It is available for Unix and Linux operating systems.

Due to programming error, it may be possible to exploit a format string vulnerability. A logging function in the TANne program contains insecure syslog() calls. This could result in the execution of attacker-supplied code.







 

Privacy Statement
Copyright 2008, SecurityFocus