Back to Database
Status published
High
CVE-2001-0869
Format string vulnerability in the default logging callback function _sasl_syslog...
Vulnerability Description
Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-0869
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.redhat.com/support/errata/RHSA-2001-150.html
- http://www.caldera.com/support/security/advisories/CSSA-2001-040.0.txt
- http://www.redhat.com/support/errata/RHSA-2001-151.html
- http://www.securityfocus.com/bid/3498
- http://lwn.net/alerts/SuSE/SuSE-SA%3A2001%3A042.php3
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7443
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:15.cyrus-sasl.asc
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000444
- http://frontal2.mandriva.com/security/advisories?name=MDKSA-2002:018
More from caldera
View All →CVE-2014-2936
The directory manager in Caldera 9.20 allows remote attackers to...
High
7.5
CVE-2014-2935
costview3/xmlrpc_server/xmlrpc.php in CostView in Caldera 9.20 allows remote attackers to...
Critical
10
CVE-2014-2934
Multiple SQL injection vulnerabilities in Caldera 9.20 allow remote attackers...
High
7.5
CVE-2014-2933
Directory traversal vulnerability in dirmng/index.php in Caldera 9.20 allows remote...
Medium
5
CVE-2003-0658
Docview before 1.1-18 in Caldera OpenLinux 3.1.1, SCO Linux 4.0,...
Medium
5
Affected Vendor
caldera
View all reports →Affected Software
openlinux workstation, linux powertools, openlinux eserver, linux, suse linux
Vulnerable Versions:
3.1, 6.2, 7.0, 7.2, 7.1, 7.3
Timeline
Official Publish:
June 25th, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.