Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-6772

Опубликовано: 27 дек. 2006
Источник: ubuntu
Приоритет: medium
CVSS2: 9.3

Описание

Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend option, allows remote attackers to execute arbitrary code via format string specifiers in the Common Name (CN) field of an SSL certificate associated with an https URL.

РелизСтатусПримечание
dapper

released

0.5.1-4ubuntu2.6.06
devel

released

0.5.1-5.1ubuntu1
edgy

released

0.5.1-4ubuntu2.6.10
feisty

released

0.5.1-5.1ubuntu1
upstream

needs-triage

Показывать по

Ссылки на источники

9.3 Critical

CVSS2

Связанные уязвимости

redhat
больше 18 лет назад

Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend option, allows remote attackers to execute arbitrary code via format string specifiers in the Common Name (CN) field of an SSL certificate associated with an https URL.

nvd
больше 18 лет назад

Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend option, allows remote attackers to execute arbitrary code via format string specifiers in the Common Name (CN) field of an SSL certificate associated with an https URL.

debian
больше 18 лет назад

Format string vulnerability in the inputAnswer function in file.c in w ...

github
больше 3 лет назад

Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend option, allows remote attackers to execute arbitrary code via format string specifiers in the Common Name (CN) field of an SSL certificate associated with an https URL.

fstec
больше 10 лет назад

Уязвимость операционной системы openSUSE, позволяющая злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

9.3 Critical

CVSS2