Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2005-4713
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-4713

Description:
Unspecified vulnerability in the SQL logging facility in PAM-MySQL 0.6.x before 0.6.2 and 0.7.x before 0.7pre3 allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors, probably involving the pam_mysql_sql_log function when being used in vsftpd, which does not include the IP address argument to an sprintf call.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA18598
  Secunia Advisory: SA20690

MISC
  http://sourceforge.net/tracker/index.php?func=detail&aid=1256243&group_id=5741&atid=305741

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200606-18.xml

CONFIRM
  http://sourceforge.net/forum/forum.php?forum_id=499394

BID
  16564


Return to the previous page.