Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-1926

Опубликовано: 24 апр. 2008
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

РелизСтатусПримечание
dapper

not-affected

code not present
devel

not-affected

2.14-1ubuntu2
feisty

ignored

end of life, was needed
gutsy

not-affected

not used
hardy

not-affected

not used
intrepid

not-affected

2.14-1ubuntu2
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 82%
0.01774
Низкий

7.5 High

CVSS2

Связанные уязвимости

redhat
больше 17 лет назад

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

nvd
больше 17 лет назад

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

debian
больше 17 лет назад

Argument injection vulnerability in login (login-utils/login.c) in uti ...

github
больше 3 лет назад

Argument injection vulnerability in login (login-utils/login.c) in util-linux-ng 2.14 and earlier makes it easier for remote attackers to hide activities by modifying portions of log events, as demonstrated by appending an "addr=" statement to the login name, aka "audit log injection."

EPSS

Процентиль: 82%
0.01774
Низкий

7.5 High

CVSS2