GNU Cfengine 2.0.8

CPE Details

GNU Cfengine 2.0.8
2.0.8
2007-08-23
19h16 +00:00
2007-09-14
15h36 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:gnu:cfengine:2.0.8:*:*:*:*:*:*:*

Informations

Vendor

gnu

Product

cfengine

Version

2.0.8

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2005-2960 2005-10-05 02h00 +00:00 cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability than CVE-2005-3137.
2.1
CVE-2004-1701 2005-02-21 04h00 +00:00 Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote attackers to execute arbitrary code via a long SAUTH command during RSA authentication.
10
CVE-2004-1702 2005-02-21 04h00 +00:00 The AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 does not properly check the return value of the ReceiveTransaction function, which leads to a failed malloc call and triggers to a null dereference, which allows remote attackers to cause a denial of service (crash).
5