ELOG Web Logbook Multiple Remote Vulnerabilities
BID:16579
Info
ELOG Web Logbook Multiple Remote Vulnerabilities
| Bugtraq ID: | 16579 |
| Class: | Unknown |
| CVE: |
CVE-2006-0597 CVE-2006-0598 CVE-2006-0599 CVE-2006-0600 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 10 2006 12:00AM |
| Updated: | Dec 13 2006 08:53PM |
| Credit: | These issues were disclosed in the referenced Debian security advisory. |
| Vulnerable: |
Elog Web Logbook Elog Web Logbook 2.6.1 Elog Web Logbook Elog Web Logbook 2.6 .0 Elog Web Logbook Elog Web Logbook 2.5.7 Elog Web Logbook Elog Web Logbook 2.5.6 Elog Web Logbook Elog Web Logbook 2.5 Elog Web Logbook Elog Web Logbook 2.4 Elog Web Logbook Elog Web Logbook 2.2.4 Elog Web Logbook Elog Web Logbook 2.2.3 Elog Web Logbook Elog Web Logbook 2.2.2 Elog Web Logbook Elog Web Logbook 2.2.1 Elog Web Logbook Elog Web Logbook 2.2 .0 Elog Web Logbook Elog Web Logbook 2.1.3 Elog Web Logbook Elog Web Logbook 2.1.2 Elog Web Logbook Elog Web Logbook 2.1.1 Elog Web Logbook Elog Web Logbook 2.1 .0 Elog Web Logbook Elog Web Logbook 2.0.5 Elog Web Logbook Elog Web Logbook 2.0.4 Elog Web Logbook Elog Web Logbook 2.0.3 Elog Web Logbook Elog Web Logbook 2.0.2 Elog Web Logbook Elog Web Logbook 2.0.1 Elog Web Logbook Elog Web Logbook 2.0 .0 Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 |
| Not Vulnerable: | |
Discussion
ELOG Web Logbook Multiple Remote Vulnerabilities
ELOG Web Logbook is prone to multiple remote vulnerabilities.
These issues include boundary-condition errors, denial-of-service attacks, and information disclosure.
An attacker can exploit these issues to facilitate a compromise of the application and the underlying computer. This includes crashing the application, executing arbitrary code, and retrieving information that may aid in further attacks.
ELOG Web Logbook is prone to multiple remote vulnerabilities.
These issues include boundary-condition errors, denial-of-service attacks, and information disclosure.
An attacker can exploit these issues to facilitate a compromise of the application and the underlying computer. This includes crashing the application, executing arbitrary code, and retrieving information that may aid in further attacks.
Exploit / POC
ELOG Web Logbook Multiple Remote Vulnerabilities
Exploitation of some of these issues will not require an exploit.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Exploitation of some of these issues will not require an exploit.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
ELOG Web Logbook Multiple Remote Vulnerabilities
Solution:
Debian Linux has released an advisory to address this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Elog Web Logbook Elog Web Logbook 2.5.7
Solution:
Debian Linux has released an advisory to address this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Elog Web Logbook Elog Web Logbook 2.5.7
-
Debian elog_2.5.7+r1558-4+sarge2_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_alpha.deb -
Debian elog_2.5.7+r1558-4+sarge2_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_amd64.deb -
Debian elog_2.5.7+r1558-4+sarge2_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_arm.deb -
Debian elog_2.5.7+r1558-4+sarge2_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_hppa.deb -
Debian elog_2.5.7+r1558-4+sarge2_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_i386.deb -
Debian elog_2.5.7+r1558-4+sarge2_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_ia64.deb -
Debian elog_2.5.7+r1558-4+sarge2_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_m68k.deb -
Debian elog_2.5.7+r1558-4+sarge2_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_mips.deb -
Debian elog_2.5.7+r1558-4+sarge2_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_mipsel.deb -
Debian elog_2.5.7+r1558-4+sarge2_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_powerpc.deb -
Debian elog_2.5.7+r1558-4+sarge2_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_s390.deb -
Debian elog_2.5.7+r1558-4+sarge2_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/e/elog/elog_2.5.7+r1558-4 +sarge2_sparc.deb
References
ELOG Web Logbook Multiple Remote Vulnerabilities
References:
References:
- Elog Web Logbook Homepage (Elog Web Logbook)