Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0097 (SSH2 Server)

BugsAlert Home > CVE-2008-0097 (SSH2 Server)
 
 

Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username field, as demonstrated by a certain LoginPassword message.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0097

Learn more about CVE-2008-0097 (SSH2 Server)
 
Tags: cve-2008-0097 ssh2 server

Related Items

      VU Case Manager "Username/Password" SQL Injection

      FrSIRT - Mandriva Security Update Fixes Joomla Multiple Remote Vulnerabilities

      CVE-2008-1529 (Prestige 661, Prestige 660, ZyNOS)

      CVE-2008-0237 (Rich Textbox Control)

      sshpass - Non-Interactive SSH Password Authentication

      Mandriva: Subject: [Security Announce] [ MDVSA-2008:165 ] perl

      FrSIRT - Gentoo Security Update Fixes ICU Regular Expressions Vulnerabilities

 

Pixel