Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

FakeBO Syslog Format String Vulnerability

A vulnerability has been reported for FakeBO that may result in an attacker obtaining elevated privileges on a target system.

Due to a programming error, it may be possible to exploit a format string vulnerability in the affected utility. Specifically, a logging function in FakeBO contains insecure syslog() calls. This could result in the execution of attacker-supplied code.







 

Privacy Statement
Copyright 2009, SecurityFocus