ELOG Web Logbook Attached Filename Remote Buffer Overflow Vulnerability

ELOG Web Logbook is prone to a remote buffer overflow vulnerability. The vulnerability is reported to exist due to a lack of sufficient boundary checks performed on user-supplied data.

A remote attacker that can authenticate to the affected daemon may leverage this issue to execute arbitrary instructions in the context of the affected daemon.

This vulnerability is reported to affect ELOG versions up to and including version 2.5.6.


 

Privacy Statement
Copyright 2010, SecurityFocus