Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2004-2264

больше 21 года назад

Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed

CVSS2: 6.4
EPSS: Низкий
debian логотип

CVE-2004-2264

больше 21 года назад

Format string bug in the open_altfile function in filename.c for GNU l ...

CVSS2: 6.4
EPSS: Низкий
github логотип

GHSA-2wff-r89p-gqg6

больше 4 лет назад

** DISPUTED ** Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-2264

Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed

CVSS2: 6.4
2%
Низкий
больше 21 года назад
debian логотип
CVE-2004-2264

Format string bug in the open_altfile function in filename.c for GNU l ...

CVSS2: 6.4
2%
Низкий
больше 21 года назад
github логотип
GHSA-2wff-r89p-gqg6

** DISPUTED ** Format string bug in the open_altfile function in filename.c for GNU less 382, 381, and 358 might allow local users to cause a denial of service or possibly execute arbitrary code via format strings in the LESSOPEN environment variable. NOTE: since less is not setuid or setgid, then this is not a vulnerability unless there are plausible scenarios under which privilege boundaries could be crossed.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу