Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2008-1926

Опубликовано: 21 апр. 2008
Источник: redhat
CVSS2: 2.6

Описание

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=443925util-linux: audit log injection via login

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
больше 17 лет назад

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

nvd
больше 17 лет назад

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

debian
больше 17 лет назад

Argument injection vulnerability in login (login-utils/login.c) in uti ...

github
больше 3 лет назад

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

2.6 Low

CVSS2