Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Michael Krax log2mail Log File Writing Format String Vulnerability

Michael Krax log2mail is reported prone to a log file writing format string vulnerability. This issue is due to a failure of the application to properly implement a formatted string function.

This vulnerability will ultimately allow for execution of arbitrary code on a system running the affected software. This would occur in the security context of the user invoking the vulnerable application; typically the 'log2mail' user with group 'adm'.







 

Privacy Statement
Copyright 2008, SecurityFocus