APC apcupsd Client Syslog Format String Vulnerability
BID:6828
Info
APC apcupsd Client Syslog Format String Vulnerability
| Bugtraq ID: | 6828 |
| Class: | Input Validation Error |
| CVE: |
CVE-2003-0098 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 11 2003 12:00AM |
| Updated: | Jul 11 2009 08:06PM |
| Credit: | This vulnerability was reported in the product changelog. |
| Vulnerable: |
APC apcupsd 3.8.5 APC apcupsd 3.8.2 |
| Not Vulnerable: |
APC apcupsd 3.8.6 |
Discussion
APC apcupsd Client Syslog Format String Vulnerability
A vulnerability has been reported for the apcupsd client that may result in an attacker obtaining elevated privileges on the vulnerable system.
Due to a programming error in the 'log_event' function it may be possible to exploit a format string vulnerability. If successfully exploited this could result in the execution of attacker-supplied code.
Any code executed would be in the security context of the apcupsd process.
A vulnerability has been reported for the apcupsd client that may result in an attacker obtaining elevated privileges on the vulnerable system.
Due to a programming error in the 'log_event' function it may be possible to exploit a format string vulnerability. If successfully exploited this could result in the execution of attacker-supplied code.
Any code executed would be in the security context of the apcupsd process.
Solution / Fix
APC apcupsd Client Syslog Format String Vulnerability
Solution:
Gentoo Linux has released an advisory. Users who have installed sys-apps/apcupsd are advised to upgrade to apcupsd-3.10.5 by issuing the following commands:
emerge sync
emerge -u apcupsd
emerge clean
SCO has released Linux advisory CSSA-2003-015.0 to address this issue.
The vendor has addressed this issue in the latest version of apcupsd.
APC apcupsd 3.8.2
APC apcupsd 3.8.5
Solution:
Gentoo Linux has released an advisory. Users who have installed sys-apps/apcupsd are advised to upgrade to apcupsd-3.10.5 by issuing the following commands:
emerge sync
emerge -u apcupsd
emerge clean
SCO has released Linux advisory CSSA-2003-015.0 to address this issue.
The vendor has addressed this issue in the latest version of apcupsd.
APC apcupsd 3.8.2
-
SuSE apcupsd-3.8.2-30.sparc.rpm
ftp://ftp.suse.com/pub/suse/sparc/update/7.3/ap2/apcupsd-3.8.2-30.spar c.rpm -
SuSE apcupsd-3.8.2-56.ppc.rpm
ftp://ftp.suse.com/pub/suse/ppc/update/7.3/ap2/apcupsd-3.8.2-56.ppc.rp m -
SuSE apcupsd-3.8.2-70.i386.rpm
ftp://ftp.suse.com/pub/suse/i386/update/7.3/ap2/apcupsd-3.8.2-70.i386. rpm
APC apcupsd 3.8.5
-
APC apcupsd-3.8.6.tar.gz
http://prdownloads.sourceforge.net/apcupsd/apcupsd-3.8.6.tar.gz?downlo ad -
Debian apcupsd_3.8.5-1.1.1_alpha.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_alpha.deb -
Debian apcupsd_3.8.5-1.1.1_arm.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_arm.deb -
Debian apcupsd_3.8.5-1.1.1_hppa.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_hppa.deb -
Debian apcupsd_3.8.5-1.1.1_i386.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_i386.deb -
Debian apcupsd_3.8.5-1.1.1_ia64.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_ia64.deb -
Debian apcupsd_3.8.5-1.1.1_m68k.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_m68k.deb -
Debian apcupsd_3.8.5-1.1.1_mips.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_mips.deb -
Debian apcupsd_3.8.5-1.1.1_mipsel.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_mipsel.deb -
Debian apcupsd_3.8.5-1.1.1_powerpc.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_powerpc.deb -
Debian apcupsd_3.8.5-1.1.1_s390.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_s390.deb -
Debian apcupsd_3.8.5-1.1.1_sparc.deb
http://security.debian.org/pool/updates/main/a/apcupsd/apcupsd_3.8.5-1 .1.1_sparc.deb -
Mandrake apcupsd-3.10.5-1.1mdk.i586.rpm
Mandrake Linux 8.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apcupsd-3.10.5-1.1mdk.i586.rpm
Mandrake Linux 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apcupsd-3.10.5-1.1mdk.i586.rpm
Mandrake Linux 9.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apcupsd-3.10.5-1.1mdk.ppc.rpm
Mandrake Linux 8.2/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apcupsd-3.8.6-1.1mdk.ia64.rpm
Mandrake Linux 8.1/IA64
http://www.mandrakesecure.net/en/ftp.php -
SCO apcupsd-3.8.6-1.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Server/CSSA-2003-015.0/R PMS/apcupsd-3.8.6-1.i386.rpm -
SCO apcupsd-3.8.6-1.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Server/CSSA-2003-015.0/RPM S/apcupsd-3.8.6-1.i386.rpm -
SCO apcupsd-cgi-3.8.6-1.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Server/CSSA-2003-015.0/R PMS/apcupsd-cgi-3.8.6-1.i386.rpm -
SCO apcupsd-cgi-3.8.6-1.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Server/CSSA-2003-015.0/RPM S/apcupsd-cgi-3.8.6-1.i386.rpm -
SCO apcupsd-powerflute-3.8.6-1.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Server/CSSA-2003-015.0/R PMS/apcupsd-powerflute-3.8.6-1.i386.rpm -
SCO apcupsd-powerflute-3.8.6-1.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Server/CSSA-2003-015.0/RPM S/apcupsd-powerflute-3.8.6-1.i386.rpm -
SuSE apcupsd-3.8.6-16.i386.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.0/ap4/apcupsd-3.8.6-16.i386. patch.rpm -
SuSE apcupsd-3.8.6-16.i386.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.0/ap4/apcupsd-3.8.6-16.i386. rpm -
SuSE apcupsd-3.8.6-17.i586.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.1/rpm/i586/apcupsd-3.8.6-17. i586.patch.rpm -
SuSE apcupsd-3.8.6-17.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.1/rpm/i586/apcupsd-3.8.6-17. i586.rpm