Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2004-2687

Опубликовано: 31 дек. 2004
Источник: debian

Описание

distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
distccfixed2.18.1-1package

Примечания

  • since 2.18.1-1 there is the --allow switch to control network access

  • https://github.com/distcc/distcc/issues/155

  • Fix in depth is only in later version 3.3, cf.

  • https://bugs.debian.org/892973

Связанные уязвимости

nvd
больше 20 лет назад

distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks.

github
больше 3 лет назад

distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks.