Back to Database
Status published
High
CVE-2005-3523
Format string vulnerability in friendsd2 in GpsDrive allows remote attackers...
Vulnerability Description
Format string vulnerability in friendsd2 in GpsDrive allows remote attackers to execute arbitrary code via the dir (direction) field.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2005-3523
Credits & Attribution
No credits recorded in the NVD database.
References
- http://secunia.com/advisories/17473
- http://www.securityfocus.com/archive/1/415788/30/0/threaded
- http://www.digitalmunition.com/DMA%5B2005-1104a%5D.txt
- http://www.debian.org/security/2005/dsa-891
- http://www.osvdb.org/20531
- http://www.vupen.com/english/advisories/2005/2307
- http://secunia.com/advisories/17477
- http://seclists.org/lists/fulldisclosure/2005/Nov/0130.html
- http://www.novell.com/linux/security/advisories/2005_27_sr.html
- http://www.securityfocus.com/bid/15319
More from gpsdrive
View All →CVE-2008-5704
src/unit_test.c in gpsdrive (aka gpsdrive-scripts) 2.10~pre4 might allow local users...
High
7.6
CVE-2008-5703
gpsdrive (aka gpsdrive-scripts) 2.10~pre4 allows local users to overwrite arbitrary...
Medium
6.2
CVE-2008-5380
gpsdrive (aka gpsdrive-scripts) 2.09 allows local users to overwrite arbitrary...
Medium
6.9
CVE-2008-4959
geo-code in gpsdrive-scripts 2.10~pre4 allows local users to overwrite arbitrary...
Medium
6.9
Affected Vendor
gpsdrive
View all reports →Affected Software
gpsdrive
Vulnerable Versions:
0
Timeline
Official Publish:
November 7th, 2005
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.