Security Advisory

CVE-2003-0672

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2003-08-14 04:00:00
Last updated 2024-09-17 02:06:32
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Format string vulnerability in pam-pgsql 0.5.2 and earlier allows remote attackers to execute arbitrary code via the username that isp rovided during authentication, which is not properly handled when recording a log message.