Логотип exploitDog
bind:CVE-2004-2264
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2004-2264

Количество 3

Количество 3

nvd логотип

CVE-2004-2264

почти 21 год назад

Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed

CVSS2: 6.4
EPSS: Низкий
debian логотип

CVE-2004-2264

почти 21 год назад

Format string bug in the open_altfile function in filename.c for GNU l ...

CVSS2: 6.4
EPSS: Низкий
github логотип

GHSA-2wff-r89p-gqg6

больше 3 лет назад

** DISPUTED ** Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-2264

Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed

CVSS2: 6.4
1%
Низкий
почти 21 год назад
debian логотип
CVE-2004-2264

Format string bug in the open_altfile function in filename.c for GNU l ...

CVSS2: 6.4
1%
Низкий
почти 21 год назад
github логотип
GHSA-2wff-r89p-gqg6

** DISPUTED ** Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу